From 3f44b6c933dbf3c2e3590536f7faa431cf519413 Mon Sep 17 00:00:00 2001 From: Bill Mcilhargey <19168174+computeronix@users.noreply.github.com> Date: Mon, 18 Jun 2018 09:51:06 -0400 Subject: [PATCH 01/18] Mention cost of solution Similar to this page - Upgrade Readiness, we should mention the cost of Update Compliance https://docs.microsoft.com/en-us/windows/deployment/upgrade/upgrade-readiness-get-started --- windows/deployment/update/update-compliance-get-started.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/windows/deployment/update/update-compliance-get-started.md b/windows/deployment/update/update-compliance-get-started.md index 9d1b01ce0f..c2f19abb9c 100644 --- a/windows/deployment/update/update-compliance-get-started.md +++ b/windows/deployment/update/update-compliance-get-started.md @@ -27,6 +27,9 @@ Steps are provided in sections that follow the recommended setup process: Update Compliance is offered as a solution in the Microsoft Operations Management Suite (OMS), a collection of cloud-based servicing for monitoring and automating your on-premise and cloud environments. For more information about OMS, see [Operations Management Suite overview](https://azure.microsoft.com/en-us/documentation/articles/operations-management-suite-overview/) or the Azure [Log Analytics overview](https://azure.microsoft.com/services/log-analytics/). +>[!IMPORTANT] +>Update Compliance is a free solution for Azure subscribers. + If you are already using OMS, skip to step **6** to add Update Compliance to your workspace. >[!NOTE] @@ -74,4 +77,4 @@ Once you've added Update Compliance to Microsoft Operations Management Suite, yo ## Use Update Compliance to monitor Windows Updates -Once your devices are enrolled, you can starte to [Use Update Compliance to monitor Windows Updates](update-compliance-using.md). \ No newline at end of file +Once your devices are enrolled, you can starte to [Use Update Compliance to monitor Windows Updates](update-compliance-using.md). From d6daa45b0736029b1b56c0c4fd3439d7b9022806 Mon Sep 17 00:00:00 2001 From: Richard Zhang Date: Mon, 18 Jun 2018 08:56:06 -0700 Subject: [PATCH 02/18] Add support for Windows 10 IoT Enterprise SKU MBAM team has completed the test for Windows 10 IoT Enterprise SKU. add this one to the supported list. --- mdop/mbam-v25/mbam-25-supported-configurations.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/mdop/mbam-v25/mbam-25-supported-configurations.md b/mdop/mbam-v25/mbam-25-supported-configurations.md index 8c4076c276..7b603f1d3f 100644 --- a/mdop/mbam-v25/mbam-25-supported-configurations.md +++ b/mdop/mbam-v25/mbam-25-supported-configurations.md @@ -464,6 +464,12 @@ The following table lists the operating systems that are supported for MBAM Clie + +

Windows 10 IoT

+

Enterprise

+

+

32-bit or 64-bit

+

Windows 10

Enterprise

@@ -518,6 +524,12 @@ The following table lists the operating systems that are supported for MBAM Grou + +

Windows 10 IoT

+

Enterprise

+

+

32-bit or 64-bit

+

Windows 10

Enterprise

From ed5a4444a7be5a778a785925d376e3cf67602f0f Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Mon, 18 Jun 2018 11:16:23 -0700 Subject: [PATCH 03/18] update top level onboard topic --- ...ows-defender-advanced-threat-protection.md | 139 +++++++++--------- 1 file changed, 70 insertions(+), 69 deletions(-) diff --git a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md index e5ee209594..d46258d563 100644 --- a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md @@ -1,70 +1,71 @@ ---- -title: Onboard machines to the Windows Defender ATP service -description: Onboard Windows 10 machines, servers, non-Windows machines and learn how to run a detection test. -keywords: onboarding, windows defender advanced threat protection onboarding, windows atp onboarding, sccm, group policy, mdm, local script, detection test -search.product: eADQiWindows 10XVcnh -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -ms.author: macapara -author: mjcaparas -ms.localizationpriority: high -ms.date: 04/24/2018 ---- - -# Onboard machines to the Windows Defender ATP service - -**Applies to:** - -- Windows 10 Enterprise -- Windows 10 Education -- Windows 10 Pro -- Windows 10 Pro Education -- macOS -- Linux -- Windows Server 2012 R2 -- Windows Server 2016 -- Windows Defender Advanced Threat Protection (Windows Defender ATP) - -[!include[Prerelease information](prerelease.md)] - ->Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-onboardconfigure-abovefoldlink) - -You need to onboard to Windows Defender ATP before you can use the service. - -For more information, see [Onboard your Windows 10 machines to Windows Defender ATP](https://www.youtube.com/watch?v=JT7VGYfeRlA&feature=youtu.be). - -## Licensing requirements -Windows Defender Advanced Threat Protection requires one of the following Microsoft Volume Licensing offers: - - - Windows 10 Enterprise E5 - - Windows 10 Education E5 - - Microsoft 365 Enterprise E5 which includes Windows 10 Enterprise E5 - -For more information, see [Windows 10 Licensing](https://www.microsoft.com/en-us/Licensing/product-licensing/windows10.aspx#tab=2). - -## Windows Defender Antivirus configuration requirement -The Windows Defender ATP agent depends on the ability of Windows Defender Antivirus to scan files and provide information about them. - -You must configure the signature updates on the Windows Defender ATP machines whether Windows Defender Antivirus is the active antimalware or not. For more information, see [Manage Windows Defender Antivirus updates and apply baselines](../windows-defender-antivirus/manage-updates-baselines-windows-defender-antivirus.md). - -When Windows Defender Antivirus is not the active antimalware in your organization and you use the Windows Defender ATP service, Windows Defender Antivirus goes on passive mode. If your organization has disabled Windows Defender Antivirus through group policy or other methods, machines that are onboarded to Windows Defender ATP must be excluded from this group policy. - -If you are onboarding servers and Windows Defender Antivirus is not the active antimalware on your servers, you shouldn't uninstall Windows Defender Antivirus. You'll need to configure it to run on passive mode. For more information, see [Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md). - - -For more information, see [Windows Defender Antivirus compatibility](../windows-defender-antivirus/windows-defender-antivirus-compatibility.md). - - -## In this section -Topic | Description -:---|:--- -[Onboard Windows 10 machines](configure-endpoints-windows-defender-advanced-threat-protection.md) | You'll need to onboard machines for it to report to the Windows Defender ATP service. Learn about the tools and methods you can use to configure machines in your enterprise. -[Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md) | Onboard Windows Server 2012 R2 and Windows Server 2016 to Windows Defender ATP -[Onboard non-Windows machines](configure-endpoints-non-windows-windows-defender-advanced-threat-protection.md) | Windows Defender ATP provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in the Windows Defender ATP portal and better protect your organization's network. This experience leverages on a third-party security products' sensor data. -[Run a detection test on a newly onboarded machine](run-detection-test-windows-defender-advanced-threat-protection.md) | Run a script on a newly onboarded machine to verify that it is properly reporting to the Windows Defender ATP service. -[Configure proxy and Internet settings](configure-proxy-internet-windows-defender-advanced-threat-protection.md)| Enable communication with the Windows Defender ATP cloud service by configuring the proxy and Internet connectivity settings. -[Troubleshoot onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md) | Learn about resolving issues that might arise during onboarding. - +--- +title: Onboard machines to the Windows Defender ATP service +description: Onboard Windows 10 machines, servers, non-Windows machines and learn how to run a detection test. +keywords: onboarding, windows defender advanced threat protection onboarding, windows atp onboarding, sccm, group policy, mdm, local script, detection test +search.product: eADQiWindows 10XVcnh +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +ms.author: macapara +author: mjcaparas +ms.localizationpriority: high +ms.date: 06/18/2018 +--- + +# Onboard machines to the Windows Defender ATP service + +**Applies to:** + +- Windows 10 Enterprise +- Windows 10 Education +- Windows 10 Pro +- Windows 10 Pro Education +- macOS +- Linux +- Windows Server 2012 R2 +- Windows Server 2016 +- Windows Defender Advanced Threat Protection (Windows Defender ATP) + +[!include[Prerelease information](prerelease.md)] + +>Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-onboardconfigure-abovefoldlink) + +You need to onboard to Windows Defender ATP before you can use the service. + +For more information, see [Onboard your Windows 10 machines to Windows Defender ATP](https://www.youtube.com/watch?v=JT7VGYfeRlA&feature=youtu.be). + +## Licensing requirements +Windows Defender Advanced Threat Protection requires one of the following Microsoft Volume Licensing offers: + + - Windows 10 Enterprise E5 + - Windows 10 Education E5 + - Microsoft 365 Enterprise E5 which includes Windows 10 Enterprise E5 + +For more information, see [Windows 10 Licensing](https://www.microsoft.com/en-us/Licensing/product-licensing/windows10.aspx#tab=2). + +## Windows Defender Antivirus configuration requirement +The Windows Defender ATP agent depends on the ability of Windows Defender Antivirus to scan files and provide information about them. + +You must configure the signature updates on the Windows Defender ATP machines whether Windows Defender Antivirus is the active antimalware or not. For more information, see [Manage Windows Defender Antivirus updates and apply baselines](../windows-defender-antivirus/manage-updates-baselines-windows-defender-antivirus.md). + +When Windows Defender Antivirus is not the active antimalware in your organization and you use the Windows Defender ATP service, Windows Defender Antivirus goes on passive mode. If your organization has disabled Windows Defender Antivirus through group policy or other methods, machines that are onboarded to Windows Defender ATP must be excluded from this group policy. + +If you are onboarding servers and Windows Defender Antivirus is not the active antimalware on your servers, you shouldn't uninstall Windows Defender Antivirus. You'll need to configure it to run on passive mode. For more information, see [Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md). + + +For more information, see [Windows Defender Antivirus compatibility](../windows-defender-antivirus/windows-defender-antivirus-compatibility.md). + + +## In this section +Topic | Description +:---|:--- +[Onboard Windows 10 machines](configure-endpoints-windows-defender-advanced-threat-protection.md) | You'll need to onboard machines for it to report to the Windows Defender ATP service. Learn about the tools and methods you can use to configure machines in your enterprise. +[Onboard previous versions of Windows](onboard-configure-windows-defender-advanced-threat-protection .md)| +[Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md) | Onboard Windows Server 2012 R2 and Windows Server 2016 to Windows Defender ATP +[Onboard non-Windows machines](configure-endpoints-non-windows-windows-defender-advanced-threat-protection.md) | Windows Defender ATP provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in the Windows Defender ATP portal and better protect your organization's network. This experience leverages on a third-party security products' sensor data. +[Run a detection test on a newly onboarded machine](run-detection-test-windows-defender-advanced-threat-protection.md) | Run a script on a newly onboarded machine to verify that it is properly reporting to the Windows Defender ATP service. +[Configure proxy and Internet settings](configure-proxy-internet-windows-defender-advanced-threat-protection.md)| Enable communication with the Windows Defender ATP cloud service by configuring the proxy and Internet connectivity settings. +[Troubleshoot onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md) | Learn about resolving issues that might arise during onboarding. + >Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-onboardconfigure-belowfoldlink) \ No newline at end of file From 3eff6b0f71ec0c7efcd1d36a015d08a1ba72174b Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Mon, 18 Jun 2018 11:34:26 -0700 Subject: [PATCH 04/18] add downlevel support --- ...ard-configure-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md index d46258d563..2c409b2bbb 100644 --- a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md @@ -61,7 +61,7 @@ For more information, see [Windows Defender Antivirus compatibility](../windows- Topic | Description :---|:--- [Onboard Windows 10 machines](configure-endpoints-windows-defender-advanced-threat-protection.md) | You'll need to onboard machines for it to report to the Windows Defender ATP service. Learn about the tools and methods you can use to configure machines in your enterprise. -[Onboard previous versions of Windows](onboard-configure-windows-defender-advanced-threat-protection .md)| +[Onboard previous versions of Windows](onboard-downlevel-windows-defender-advanced-threat-protection.md)| Onboard Windows 7 and Windows 8.1 machines to Windows Defender ATP [Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md) | Onboard Windows Server 2012 R2 and Windows Server 2016 to Windows Defender ATP [Onboard non-Windows machines](configure-endpoints-non-windows-windows-defender-advanced-threat-protection.md) | Windows Defender ATP provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in the Windows Defender ATP portal and better protect your organization's network. This experience leverages on a third-party security products' sensor data. [Run a detection test on a newly onboarded machine](run-detection-test-windows-defender-advanced-threat-protection.md) | Run a script on a newly onboarded machine to verify that it is properly reporting to the Windows Defender ATP service. From 76e170355cc65fa23b5d297d37c57e92821b782f Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Mon, 18 Jun 2018 11:39:56 -0700 Subject: [PATCH 05/18] remove dns --- ...blocked-list-windows-defender-advanced-threat-protection.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/windows/security/threat-protection/windows-defender-atp/manage-automation-allowed-blocked-list-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/manage-automation-allowed-blocked-list-windows-defender-advanced-threat-protection.md index 824dbb804b..27426578b6 100644 --- a/windows/security/threat-protection/windows-defender-atp/manage-automation-allowed-blocked-list-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/manage-automation-allowed-blocked-list-windows-defender-advanced-threat-protection.md @@ -42,8 +42,7 @@ You can define the conditions for when entities are identified as malicious or s - File hash - Certificate - IP address - - DNS - + 3. Click **Add system exclusion**. 4. For each attribute specify the exclusion type, details, and their corresponding required values. From 7bd3cda6d1aacfe47ed1d40e4dc8b65d0a10e754 Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Mon, 18 Jun 2018 12:11:47 -0700 Subject: [PATCH 06/18] copyedit --- .../protect-enterprise-data-using-wip.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/security/information-protection/windows-information-protection/protect-enterprise-data-using-wip.md b/windows/security/information-protection/windows-information-protection/protect-enterprise-data-using-wip.md index b6041c8b1f..1ad43ba3f3 100644 --- a/windows/security/information-protection/windows-information-protection/protect-enterprise-data-using-wip.md +++ b/windows/security/information-protection/windows-information-protection/protect-enterprise-data-using-wip.md @@ -8,7 +8,7 @@ ms.mktglfcycl: explore ms.sitesec: library ms.pagetype: security ms.author: justinha -ms.date: 05/30/2018 +ms.date: 06/18/2018 ms.localizationpriority: medium --- @@ -39,7 +39,7 @@ As an admin, you can address the question of who gets access to your data by usi In the end, all of these security measures have one thing in common: employees will tolerate only so much inconvenience before looking for ways around the security restrictions. For example, if you don’t allow employees to share files through a protected system, employees will turn to an outside app that more than likely lacks security controls. ### Using data loss prevention systems -To help address this security insufficiency, company’s developed data loss prevention (also known as DLP) systems. Data loss prevention systems require: +To help address this security insufficiency, companies developed data loss prevention (also known as DLP) systems. Data loss prevention systems require: - **A set of rules about how the system can identify and categorize the data that needs to be protected.** For example, a rule set might contain a rule that identifies credit card numbers and another rule that identifies Social Security numbers. - **A way to scan company data to see whether it matches any of your defined rules.** Currently, Microsoft Exchange Server and Exchange Online provide this service for email in transit, while Microsoft SharePoint and SharePoint Online provide this service for content stored in document libraries. From 5e3a6fadad5e0864310bdea0dbefe5f3b611e0ba Mon Sep 17 00:00:00 2001 From: Ryan Ries Date: Mon, 18 Jun 2018 14:13:38 -0500 Subject: [PATCH 07/18] Adding more detail about Kerberos service tickets Adding more detail about Kerberos service tickets --- .../credential-guard/credential-guard-protection-limits.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md b/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md index 1f51382ce3..aad838b212 100644 --- a/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md +++ b/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md @@ -31,6 +31,7 @@ Some ways to store credentials are not protected by Windows Defender Credential - Digest and CredSSP credentials - When Windows Defender Credential Guard is enabled, neither Digest nor CredSSP have access to users' logon credentials. This implies no Single Sign-On use for these protocols. - Supplied credentials for NTLM authentication are not protected. If a user is prompted for and enters credentials for NTLM authentication, these credentials are vulnerable to be read from LSASS memory. Note that these same credentials are vulnerable to key loggers as well.- +- Kerberos service tickets are not encrypted, only the Kerberos Ticket Granting Ticket (TGT) is encrypted. - When Windows Defender Credential Guard is deployed on a VM, Windows Defender Credential Guard protects secrets from attacks inside the VM. However, it does not provide additional protection from privileged system attacks originating from the host. - Windows logon cached password verifiers (commonly called "cached credentials") do not qualify as credentials because they cannot be presented to another computer for authentication, and can only be used locally to verify credentials. They are stored in the registry on the local computer and provide validation for credentials when a domain-joined computer cannot connect to AD DS during user logon. These “cached logons”, or more specifically, cached domain account information, can be managed using the security policy setting **Interactive logon: Number of previous logons to cache** if a domain controller is not available. From 9b1ea04133287f77cc41625faa2d70618290dc25 Mon Sep 17 00:00:00 2001 From: Ryan Ries Date: Mon, 18 Jun 2018 14:28:53 -0500 Subject: [PATCH 08/18] Update credential-guard-protection-limits.md --- .../credential-guard/credential-guard-protection-limits.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md b/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md index aad838b212..a619cc000a 100644 --- a/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md +++ b/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md @@ -31,7 +31,7 @@ Some ways to store credentials are not protected by Windows Defender Credential - Digest and CredSSP credentials - When Windows Defender Credential Guard is enabled, neither Digest nor CredSSP have access to users' logon credentials. This implies no Single Sign-On use for these protocols. - Supplied credentials for NTLM authentication are not protected. If a user is prompted for and enters credentials for NTLM authentication, these credentials are vulnerable to be read from LSASS memory. Note that these same credentials are vulnerable to key loggers as well.- -- Kerberos service tickets are not encrypted, only the Kerberos Ticket Granting Ticket (TGT) is encrypted. +- Kerberos service tickets are not protected by CredGuard, but the Kerberos Ticket Granting Ticket (TGT) is. - When Windows Defender Credential Guard is deployed on a VM, Windows Defender Credential Guard protects secrets from attacks inside the VM. However, it does not provide additional protection from privileged system attacks originating from the host. - Windows logon cached password verifiers (commonly called "cached credentials") do not qualify as credentials because they cannot be presented to another computer for authentication, and can only be used locally to verify credentials. They are stored in the registry on the local computer and provide validation for credentials when a domain-joined computer cannot connect to AD DS during user logon. These “cached logons”, or more specifically, cached domain account information, can be managed using the security policy setting **Interactive logon: Number of previous logons to cache** if a domain controller is not available. From 44b76b0fa190384f9f8b78f661b36e6c71e737dd Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Mon, 18 Jun 2018 12:30:43 -0700 Subject: [PATCH 09/18] Update credential-guard-protection-limits.md --- .../credential-guard/credential-guard-protection-limits.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md b/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md index a619cc000a..1428ee92e3 100644 --- a/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md +++ b/windows/security/identity-protection/credential-guard/credential-guard-protection-limits.md @@ -31,7 +31,7 @@ Some ways to store credentials are not protected by Windows Defender Credential - Digest and CredSSP credentials - When Windows Defender Credential Guard is enabled, neither Digest nor CredSSP have access to users' logon credentials. This implies no Single Sign-On use for these protocols. - Supplied credentials for NTLM authentication are not protected. If a user is prompted for and enters credentials for NTLM authentication, these credentials are vulnerable to be read from LSASS memory. Note that these same credentials are vulnerable to key loggers as well.- -- Kerberos service tickets are not protected by CredGuard, but the Kerberos Ticket Granting Ticket (TGT) is. +- Kerberos service tickets are not protected by Credential Guard, but the Kerberos Ticket Granting Ticket (TGT) is. - When Windows Defender Credential Guard is deployed on a VM, Windows Defender Credential Guard protects secrets from attacks inside the VM. However, it does not provide additional protection from privileged system attacks originating from the host. - Windows logon cached password verifiers (commonly called "cached credentials") do not qualify as credentials because they cannot be presented to another computer for authentication, and can only be used locally to verify credentials. They are stored in the registry on the local computer and provide validation for credentials when a domain-joined computer cannot connect to AD DS during user logon. These “cached logons”, or more specifically, cached domain account information, can be managed using the security policy setting **Interactive logon: Number of previous logons to cache** if a domain controller is not available. From 2737b13352abe9770279a134d2ed1bf03bbfafab Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Mon, 18 Jun 2018 13:31:19 -0700 Subject: [PATCH 10/18] update min onboarding topic to include other windows versions --- ...ows-defender-advanced-threat-protection.md | 6 ++- ...ows-defender-advanced-threat-protection.md | 43 +++++++++++++++++-- 2 files changed, 44 insertions(+), 5 deletions(-) diff --git a/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md index db4d4d1e03..38e33a95da 100644 --- a/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -10,7 +10,7 @@ ms.pagetype: security ms.author: macapara author: mjcaparas ms.localizationpriority: high -ms.date: 06/06/2018 +ms.date: 06/18/2018 --- # Configure alert notifications in Windows Defender ATP @@ -50,7 +50,9 @@ You can create rules that determine the machines and alert severities to send em 2. Click **Add notification rule**. 3. Specify the General information: - - **Rule name** + - **Rule name** - Specify a name for the notification rule. + - **Show customer display name** - Specify the customer name that appears on the email notification. + - **Include a deeplink** - Adds a link with the tenant ID to allow access to a specific tenant. - **Machines** - Choose whether to notify recipients for alerts on all machines (Global administrator role only) or on selected machine groups. For more information, see [Create and manage machine groups](machine-groups-windows-defender-advanced-threat-protection.md). - **Alert severity** - Choose the alert severity level diff --git a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md index e5ee209594..56ecea1dca 100644 --- a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md @@ -17,14 +17,18 @@ ms.date: 04/24/2018 **Applies to:** +- Windows 7 SP1 Enterprise +- Windows 7 SP1 Pro +- Windows 8.1 Enterprise +- Windows 8.1 Pro - Windows 10 Enterprise - Windows 10 Education - Windows 10 Pro - Windows 10 Pro Education -- macOS -- Linux - Windows Server 2012 R2 - Windows Server 2016 +- macOS +- Linux - Windows Defender Advanced Threat Protection (Windows Defender ATP) [!include[Prerelease information](prerelease.md)] @@ -44,6 +48,38 @@ Windows Defender Advanced Threat Protection requires one of the following Micros For more information, see [Windows 10 Licensing](https://www.microsoft.com/en-us/Licensing/product-licensing/windows10.aspx#tab=2). +## Hardware and software requirements +### Supported Windows versions +- Windows 7 SP1 Enterprise +- Windows 7 SP1 Pro +- Windows 8.1 Enterprise +- Windows 8.1 Pro +- Windows 10 + - Windows 10 Enterprise + - Windows 10 Education + - Windows 10 Pro + - Windows 10 Pro Education +- Windows server + - Windows Server 2012 R2 + - Windows Server 2016 + - Windows Server, version 1803 + +Machines on your network must be running one of these editions. + +The hardware requirements for Windows Defender ATP on machines is the same as those for the supported editions. + +> [!NOTE] +> Machines that are running mobile versions of Windows are not supported. + + +### Other supported operating systems +>[!NOTE] +>You'll need to know the exact Linux distros and macOS X versions that are compatible with Windows Defender ATP for the integration to work. + +- macOSX +- Linux + + ## Windows Defender Antivirus configuration requirement The Windows Defender ATP agent depends on the ability of Windows Defender Antivirus to scan files and provide information about them. @@ -61,7 +97,8 @@ For more information, see [Windows Defender Antivirus compatibility](../windows- Topic | Description :---|:--- [Onboard Windows 10 machines](configure-endpoints-windows-defender-advanced-threat-protection.md) | You'll need to onboard machines for it to report to the Windows Defender ATP service. Learn about the tools and methods you can use to configure machines in your enterprise. -[Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md) | Onboard Windows Server 2012 R2 and Windows Server 2016 to Windows Defender ATP +[Onboard previous versions of Windows](onboard-downlevel-windows-defender-advanced-threat-protection.md)| Onboard Windows 7 and Windows 8.1 machines to Windows Defender ATP. +[Onboard servers](configure-server-endpoints-windows-defender-advanced-threat-protection.md) | Onboard Windows Server 2012 R2 and Windows Server 2016 to Windows Defender ATP. [Onboard non-Windows machines](configure-endpoints-non-windows-windows-defender-advanced-threat-protection.md) | Windows Defender ATP provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in the Windows Defender ATP portal and better protect your organization's network. This experience leverages on a third-party security products' sensor data. [Run a detection test on a newly onboarded machine](run-detection-test-windows-defender-advanced-threat-protection.md) | Run a script on a newly onboarded machine to verify that it is properly reporting to the Windows Defender ATP service. [Configure proxy and Internet settings](configure-proxy-internet-windows-defender-advanced-threat-protection.md)| Enable communication with the Windows Defender ATP cloud service by configuring the proxy and Internet connectivity settings. From 91faf29dafb0028c1ae30cda88e85c81fa14f217 Mon Sep 17 00:00:00 2001 From: Richard Zhang Date: Mon, 18 Jun 2018 15:18:33 -0700 Subject: [PATCH 11/18] Update release-notes-for-mbam-25-sp1.md --- mdop/mbam-v25/release-notes-for-mbam-25-sp1.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md b/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md index 6fb8a41a78..a39802e24b 100644 --- a/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md +++ b/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md @@ -136,10 +136,12 @@ Digging this further with Fiddler – it does look like once we click on Reports **Workaround:** Looking at the site.master code and noticed the X-UA mode was dictated as IE8. As IE8 is WAY past the end of life, and customer is using IE11. Update the setting to the below code. This allows the site to utilize IE11 rendering technologies - + Original setting is: - + + + This is the reason why the issue was not seen with other browsers like Chrome, Firefox etc. From 161159d7c388b6c3d44eea336ada215c89f44b0e Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Mon, 18 Jun 2018 17:11:33 -0700 Subject: [PATCH 12/18] added steps for path rule --- .../create-wip-policy-using-intune.md | 41 +++++++++++++++++- .../images/create-new-path-rule.png | Bin 0 -> 54464 bytes .../images/path-condition.png | Bin 0 -> 29098 bytes .../images/select-path.png | Bin 0 -> 20472 bytes 4 files changed, 39 insertions(+), 2 deletions(-) create mode 100644 windows/security/information-protection/windows-information-protection/images/create-new-path-rule.png create mode 100644 windows/security/information-protection/windows-information-protection/images/path-condition.png create mode 100644 windows/security/information-protection/windows-information-protection/images/select-path.png diff --git a/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md b/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md index 12a7d8e8a4..9a4ff4b1c4 100644 --- a/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md +++ b/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md @@ -193,9 +193,9 @@ In this example, you'd get the following info: Where the text, `O=MICROSOFT CORPORATION, L=REDMOND, S=WASHINGTON, C=US` is the publisher name to enter in the **Publisher Name** box. ### Add an AppLocker policy file -For this example, we’re going to add an AppLocker XML file to the **App Rules** list. You’ll use this option if you want to add multiple apps at the same time. For more info about AppLocker, see the [AppLocker](https://technet.microsoft.com/itpro/windows/keep-secure/applocker-overview) content. +Now we’re going to add an AppLocker XML file to the **App Rules** list. You’ll use this option if you want to add multiple apps at the same time. The first example shows how to create a Publisher rule for packaged apps. The second example shows how to create a Path rule for unsigned apps. For more info, see [AppLocker](https://technet.microsoft.com/itpro/windows/keep-secure/applocker-overview). -**To create an app rule and xml file using the AppLocker tool** +**To create a Publisher rule and xml file for packaged apps using the AppLocker tool** 1. Open the Local Security Policy snap-in (SecPol.msc). 2. In the left pane, expand **Application Control Policies**, expand **AppLocker**, and then click **Packaged App Rules**. @@ -262,6 +262,43 @@ For this example, we’re going to add an AppLocker XML file to the **App Rules* ``` 12. After you’ve created your XML file, you need to import it by using Microsoft Intune. +**To create a Path rule and xml file for unsigned apps using the AppLocker tool** +1. Open the Local Security Policy snap-in (SecPol.msc). + +2. In the left pane, expand **Application Control Policies**, expand **AppLocker**, and then click **Executable Rules**. + + ![Local security snap-in, showing the Executable Rules](images/create-new-path-rule.png) + +3. Right-click in the right-hand pane, and then click **Create New Rule**. + +4. On the **Before You Begin** page, click **Next**. + +5. On the **Permissions** page, make sure the **Action** is set to **Allow** and the **User or group** is set to **Everyone**, and then click **Next**. + +6. On the **Conditions** page, click **Path** and then click **Next**. + + ![Create Packaged app Rules wizard, showing the Publisher](images/path-condition.png) + +7. Click **Browse Folders...** and select the path for the unsigned apps. For this example, we’re using "C:\Program Files". + + ![Create Packaged app Rules wizard, showing the Select applications page](images/select-path.png) + +8. On the **Exceptions** page, add any exceptions and then click **Next**. + +9. On the **Name** page, type a name and description for the rule and then click **Create**. + +10. In the left pane, right-click on **AppLocker**, and then click **Export policy**. + + The **Export policy** box opens, letting you export and save your new policy as XML. + + ![Local security snap-in, showing the Export Policy option](images/intune-local-security-export.png) + +11. In the **Export policy** box, browse to where the policy should be stored, give the policy a name, and then click **Save**. + + The policy is saved and you’ll see a message that says 1 rule was exported from the policy. + +12. After you’ve created your XML file, you need to import it by using Microsoft Intune. + **To import your Applocker policy file app rule using Microsoft Intune** 1. From the **App Rules** area, click **Add**. diff --git a/windows/security/information-protection/windows-information-protection/images/create-new-path-rule.png b/windows/security/information-protection/windows-information-protection/images/create-new-path-rule.png new file mode 100644 index 0000000000000000000000000000000000000000..b33322202cc638afaea5f3fcd77fb7c6cd85a9a6 GIT binary patch literal 54464 zcmb@t2Q=IN|2CWmu@bbjVl=9Q>L7|BsHmcAYFvw(gFmH$MGg_QQW|Vm0VfUD4z1 zUqhdYii+M_Xv^P zKu8#ZgH`yINB?g8rn-=j@Uc7jr5qg?~`P*{8 zBKRn1_)q<_tv;QA-Bm3Nfdr~#-;kdQu~G~X+T0p2u=?yiopX9ip;vViA|q$+#?B*3 z(&8W_)848DU}t`ZiD6nUnOl*mWW8i04&Ig}u}=Gd&jqNiFH3L;X|kltrwn%iDB+pa z3isFsC^SnjfxQUlfdvm_y)?YKWPy<_=Rf$bNJA?YpWm^T zrfY%+3MDG=-BQ@BNOlDrvL)SLsNmT1{M2UAoVx)F*P$X7D?_+~A=nI!hQshu3LOYS z4g&z=Xt%7$w|GGPZ99JUue0fTrNPhykX#Dbbr1#qy4`C@x;a?h_r>y5q}fZ^xH$Om z79itAb!rF_3Xp8?r%-Yk^6OVqyK8GvHu!GU^kX{ErW1K+eg%-y3-}-;5|a`oTfnL6 ze|hQxfcL z{mhAIYW?G}PVq`yfde=7VyQt{uq)r8h7(_*v$k38iLYg9wfV>DVOTJK>74-V={ECf zo~dzQhJS={{2E%x5g!78#lA~GYWI<+{Wn!k;5yfrQ`Kq8(ojZr~jO5FOq(zv6WN^1*kilk5*bgVUWS@ zOO{GNSHAU=ZKeQn3hQZzf*c4;rYJxo7a{V109jFB<>Ck@kl+tAM@G>ku!sbJ&*DKr zYV*>)27lBbO49Yj^e>j^aA?KO)r4cs8@^jMUsSTV9PY_ z-D5MxMWxaBv@C86n1=XeFQ_(uYgCKZwZ-xjXPAD4;yVqmAXmVi>CAQxG;9+bp3S-U zG0j;H^k9HI*T*SBDh!xrtpt`yhr$B)Wn*>mLCT{x2#Cc1Hl+s*Di(S!fuefU}ljgXb9t^6ASp36*dmEx$s3&@SNbG(^zk12l!h zJ3^3vgJSWw4&*6+mKF*tO)Ei0I-LZ;mdpy6CmIRwr1nXu`jP;`^Fkj`Cmept8O$c~ zabF69PJj18ep`pOnu}v8LX3MuJokl{&j0!RgUeajXbRxD|B0(Fbv7d6^FZ zCIM6*(7jWJWho(l7g1w!C3A^CL#TtRIDt>%5-lu<1oK?JIj`P(;D6RJM6i$0`vzDjV@4d&<#Hpm$y3kSy2k4kHr^6YE;g*a$N8Z?8qKA z$@Rk=-{cihV1bpnK8m+8eb_0+HZSiZ+Pm%)e2BjQ^psnuIFP+1ZLFB@PZr04 zR|{YrfmRWUOY$w9-kpZ_>e^2HRa z67do)v06|*-gr1$nA_`>^Db$HU7q^b<#ar}CB0z#BaVM7r{nCS@}%1@wPeB;7sfw1 z0@^451dLa*j`B|Dk0Jji-<`Ag4XT83^mUbA)xpS7Rdo)~Ryo+50EV|xbP2LR(Dnsk z)Fi7W3s1O0g{kl2)1G)O(+fkP+>{8=j>HCv$PZ7zjQD#UfK=7Ockb>FT#iFdgN06nopqxpjMoe z{xi4>1fu01N0g^^|&xC}%I z$2!6aOu5kzw-Ac0ENwR6CzhBCri2hDt%0v`>hkK3qS)>IeA@v*>r~&I9^g_i^;jw{-lJp zJ$GRWHt2s<-tVRhOGb$9+aS6lGtpe;@D(_<{$iw@Q(ao?@Og{zNWtzc9>?7IJiXEl zx+Dh{5|G-yv~lGvg7B6@;mAA{8u{GkeaB_2Cl{<>S_6~v5<#>CJKe}}v_nJ{3{KYE zA!`c;c*C3&+LTcK4+cP97pZn&syzP0PmzLb$} zv&S)VVahl1c6uU&k+q{mUfrhF9fxf9-5}Jm`cinqg{4P}@Va2zRZf1}5OAJI!FD_Jbl>(lSDb2K@c0FF#$S2Y*fIY);X>Mdm z4|-~0MbuW9IVAxqC(BPEYwdoD413*{ijsEraBfNzrcF+gQQ$2HnCApr6v(o=-<_Yn zj0bL2aE6iW_=5(c``|o4YCLT7cwX}d4lEdj0|^%>i&nw)XX)&A2>~pxVKL%>!m-u|gH*A( z3L_Ptzz222Rp(u`ErZ=d`i{!#-Y1pS2X)R?b0Tgr>Bn1ud2xC?>;Gs%A2uygIsmZG z*T(JzPJV*8K1hE5W4kN^r5z@*(BE+S`?gp=DAXh;yZyyB_x!{7RH!$}Nr)4)9Fpm# zh)SUt_q}PB%O?Q2HD5wdoFmvacOXQwq&LixvyO%v5ba5`1|6VE;9pCzAO*p;eE8Qd z6sB_+dY+lc3)p6M=6U4(%v}LTkOEr9IWEtr-GMS|UMqN7 zUGLUA#`u( zW4&XEyA`0%{y8(0{+y$Ky0Rt?`agf;_Xi{D0e>OH>YOeG3Bn6wRVz#5BXsY0av^aK zGknUBQ|;(Dg&CkLUJ9l;8ZNeBe%$3e5dp4hZ0w5?c5+;sY&f=Rh~t1lZfHZ>Sl(TS z%jbSy2}?))7=BV+#qizyLN~JCfveOMZS2JgT8eOZywA$Q(zg~FHUI2yF7OIno&EVG z#;2|R=5{WFKnBGX9Ixr2fCtwt|yih?#RVr{wCb?7!p}RFgC4R5S)$(bq)pGZq1`gbIX?` zy;q=F4%WkI_Lwbq=U0Jvk~!eOA7@N-Y%_Ble86fg;98L%BF*ZcerLG?!Kmd7gCl{2r#}LB|2ePs>SY=P zXKX*g+^*oQTru&sR!F%8_?G^LdVx^8>3(xq+NXS9!mS_0p&vXK^kI;h2cAlV)6_a6 zm8VU=>7kAldO=4-$>815fp}GgUmJ^g21$)x-e=}B4;M3s%dCEwuv}1AKdM=H%iXh+ zClknN0^U2^ZQ^x&6!3?IMyRmw?Qi=qCEp(hIa32i_^ga_=%rn?y=7?$XX$!Q7cuA)A`qA!d+4FI2AeD~6D%l$K)1xwJg6?FPF;lDx44Q<$V1v zV7iZ}7uB#m{P1Wq_|PC)5@l#T*q^62ZC;KAy7+rx!mM$8bjGZ}bm2lswl=?5Z?zYM z1>{H*J9X|WX+P&6C)`!VN9-tPe{XD4EK_-8Yk%ylWUuJK$`*e`W)n(xE2-?6?L@7& zY?2Y>?j_@5CC_=t?AMCkYvU%KY+=^T&#Od^X}q)SH))~|IS%AUJWP6Hm*)sy_X+jVE)1&J)RH4 zx(vvYOVQ;c!FI034_QBTOu-n0rv)!`fyp;ihHOrjE3-ic*Rv$Lv{Q^^KniF2ViR7vPv#3k9hXwiZ35R=fyAop6-{xeAlGHlTwPem;D1hs#euYP#o!R_kSY1jrl) zQo1FRgdv@CaRTW}*d&nVO(R_6t`h73yh2Eb{Njxg5H>~dN)%v1Pdy9zD)ZlD;+D@s z)fUX+hwm-EV_(1N=qcb7DBO3WoQGMSq_P5IaWb0^)Ed9=+YRt%&+A$vVG`8;KghTk znKO2MGNMy0Fp{Bvp$m%y&Pc@lsyKla*?ZB&GjU8Fs9?}+N4wXt)mTYd_ zRL*moJeW~G%r!p#VD^=`CT#&)aH8V)2hG*xbrKbZ);pzWS=|Rog%uvSC zMb3_DSO>x8JF~9}D?6UP9RL6UqMYN$*a*2WO#^gF;|sjV>!yNk$0jhBdDKnOsT=T*h~_gu%F`f{}DWwz%DZY^cj*sS4HN33PWi^zYB z4&vwTWr4;DU-|l~24y6+hauhy407NrbNCwyfCR(GJFb4ge_}s2sUEHrKaW?HosKs+ zTz$SEp{D5iEfan*aQ5&Yoz=j_u_OA{4B5v)fVER9nzuOo>Eo<(LF-{+cbw3u^*Ejz z;)5X7-fMp@lil?TO+x1cR#evN2NG>r(`ICX_qij>%&NFjWi0Dqs$c5;HV+v;jx2a% zlLiQJ~@ zWRryrm4`5`Z!Yoe1>cObI&tYJ?~4^oeiCoCuz{=>`*47_ z?m;LZ!yHCoXB&-?-tpjYLRP86?69hkxEy|DpEZsUgqLQ0xOif#oI6NZ_!R!!Me2j& z2SD%$Y1S*pPG9Y8FMd_a6`U&(8wHdEJy_l~^{2gKC$*tr&yFpA@PB4e08E1w5xR0S zDivx?&i~F#L#7umin}aPTbE4SeW+A}_{Mw1d~E6d(xVq&D=PaNE-PR!JIkATUUnko zBbDA{NsTl;=RqGo;d+_#5D?~!^*|ZQ5#PSH$2a&|FYw&G=_|(ix~mP9Kcb$;7KWj8 z?%IRT0+4tOg3xFl&S*r!xQS(XQ0E$EteO;c}LQ%vmh=0fknKYS!<;n?s@cxktJ z%0EWs7l=x544U)HSsiGV%}xuNA6Nh+V@bU*x<;ah)65&*_lj$1)9NSV{nXvb(lIk- zhGI6cTl^OB<0odtSuMMVz0`@+6;>(Qe#UL9MD17iL(@yUnR z5%<`f0*g39K_5YHUl9Vo?sUoZqKj#S2O^4(!`psdx#Wu-86E~3WS@xr_EUyv>E97# z+!Y&=38Y=uzgVw0=?n7EkrbadoH3xyC0p60T+2~#9$tTQzdW7GQt~c?tbPC@;(5qy z*tuxV&%Ud*%hER|dDRanK3c#Y^)gvY?@CUY`KjGw<_p!f__1TX;`RQVo0O@%(g5X* z#zP=^5Oq)%JWzJ@ZtVXv)M(!CYgk9bkFkofjk0-B@lqTaTV(B$AN;Ae{v0D?GrkKi z=#?_cy$8(Y(km5WS*dog0VZ-Oq}?+TE*hegWgxa<3mhF%UIkGlx_FhiFs(H4VO1{q z>38BIO*;eFa{)Mt_RD;p>hC)jNPw2bI|RQ+UW}PwV_@dp>)pZGy%LbNta;%sKOBgf zZZcl$cVZ;C+zfjWwi4QW6U_9Ugqe;H>GAMA!vFl6ub6C0W#?L0kcoQS| z=*Q7+$*0LjkaYR2e<-Y?HzjdQ^Pp*#SU|pnhzl#ES56OR6@K*Bz#j%M3uOG;3v+{X z%tMpMV>OQk;%r5(J*Yoy_%!@jnogb&u@v&(Xc4?3*ejEAaFlpB{m0}A5$Q4t5WjAV zKK-a1Nqfi473Z;ja&}!)c2?J~vxvRmk|F|H+fA37rCK%9HE384@bPs1VsYOW93D=; zs8z8LDI%$;tPy3`1>4J>&U(r6Cj4eJsOPYSTL$ZAMATQvTn?=dD{fuKDo0cTm&5rv zpS!1}|~C_NTPRwf3*U4c>Xq*;6j>0KIL3d9V zY`cdl@(iN-Z|h64_}=hJD|!ULmq1yu9JRD}8cL%24L6lQvF;XKg>s%k%pRTiimj?D z+JK#g6HKF>S&3*ib*SLPlE@z_O+jG51Oy=ugv-BfRn;;-u76dveA)&Ab$+FG%8COm znbm#&$?J7Qw!W4od#*P8R51g^=`;aBFF*kQGCHrj$ff`g&7L0|(k*dNa4c6%l%-Nk z_G>R-9w-_Eu*>2{W`(4Y4VS0GM`GjT69%3G;KwrN-~X*_K*0GJy)bvBbpO}xVAynR zijn>NRcvmI=4hv{Fa9kLg)A-Kr!~qQRzb1jC*h;49V@^PK&=qgp)$&Y1#?c;;8;2> zlp4m54D-7TV3NnAB9Ozf3msDK_=U<%X)dUNfS2ui_igAoS}}Z}6gfbK9FsJAC7^Jo z{8od%DC`zd*gM; z#;b|PmxSj8jIRqdOW>nJsQ8;d8It49fs!q>zFdRMYtRgNr@;&F3*0?koaS{C9vU2s zg~^6mbJ{`PK4Q?fr)Lu_J(ZN%FkylbQDhZeiRi&U{`b^3=ex;2x6NM}B_=g{T=dNV zlucAR4rEnY2JO$eM+Lu}LiP3P0iy}D6GHMyyw8t3bSMdSgHot6%1`TgW#MgcG& z#E&5tTP|46?LeGBeguxv>Fobo!hI`KJgwFadFjTN2Mn(N$+;{1F!GAk4!FZlh2)p0 zy&qR$8Z)27uWel zX*ubkP$gEdKhB{k2w^UQ?kzIL+S;k6uU!AzV1QCO?Ryt`GY!;FoJbdC;l-&^^y_|g z=g$iCXWNaxFkC;H+TREhhQkqp@8c#}g5-~pPJm#QecWf6glx`y#+T(!ja5FIq4!0s ztSl=^X=~0e4r_y^)nzjGcimJscFWZ0KNi&JBQbA9pDo_Kw|kRiRsa$WX2?urrNWt6 z&4I(5{hp-z|Vggr`*CWekYM<_MzHmr%41koDZG=fU< zXd%ZMa(+%ok+@|5dwy!07xS7cpoCmsHGbs%bT&0s&Gp@|w2gwljiBeCKI;;j#$~HN z+g4foyB#oL0CSzknfSZ?!bB*0OI70(x$BpV91?!LuG z@?=}79*UV>mjf*U!pb?7(!q=ZWoCTvsx*|lJzks|!lZst-X0kt%qF!SlRHc<9V-f3 z?VhS@UcbueY)4&pw?|$3I;AcX z#w`Kwe;({_9)d=PWr8WR}RPFp4o|>hPOu>JW*R8X*%@&TxV3CE%#ZH!_s$} zZ4w#^$YWpE*q)M_YF5_O)eT|ycuC~3CU;2D3|W`kCyym0CJHb&9IMRMbslFqIlwHs znwM|D(tqstJUu<7d7FZPyMD7br#;0oT<0K$FTZGR}0UA_(lNM=z2mYO{g|prwn;*Bk_q^C}3(&(>siPTx!ujcwyYuoD z+1i4th3j&qPU|IBCM#o`Ol?!!k(vLZLp9#YB?Ji{qT6Xi8L&tRLKRatVB zcRwIgd`>JVAj_RxPNq-azu&OBJ-2LS@o_%ylW}7?c0WY%$ZyTrO0DYJGGpP$X;Gl= z@-weHi5^@|&&OTQksJ@hlsMQ>z+ujnwy}!t?rs4wDnjG9N>5z{xNG{J%V{i^@2i&> zVXrfmMJJcksj+=ymcfkeV`sH#LYOXyu%|Bl0(LzzLD_H}1r(q!4HbD;xHVtBZWn1J zqrmdY=vh1a{G851t2{hr&+q(zHgvC@EUeE;?g(L)W?h^tEK03Qh9odYmXS#73QHwW zkSw(&OzXo8AAqz|76%KvrV+5VG#VBq1ldAUSD?&x@muLpgwks`&nT;Ti6sQ_SDJDD z|CVNi1oZ(QDRE?dTSBWqjEe%Ze0t@3CU~vHI)^a!=(*TerXnOG@Qgi`zOd72V z>;2wR?UYkSLiLMvAK;A^@H|&{*H*c%x)Zekm>-#-kj@dA05Sw2l~1y=xmSKPHFq!;nHuU>Suftz>4?QRWvzp<(=s(|8PNXz2^! zuNubuct$xey;e{kE%KcJgD(xYPS z%YKYiP{4M~{Y!_c!H#pwG2=dy6SWL=RY~p40Q=Tvt)rIXjEO=*%F%Yyp~=cy8!qhO z!M@f0HG0UY@{yDX!(TSC^$pHpw=LDf{C{7Os?^E$tNPp2(k{&nbHK0rz4Al6)novmXEg zB4E0buCX~$b8FExZl;pSmCsWff73#)U$}(g99iNl+#CaBa=lzt?BGXTw#xuU zT7PxRuLFNZx;zODfN1yYisaI!-PKr0$mDO*gVbI&lAR#FnLWEwLy5IYff$N(stXyKj-Z=*!qGS2 z7S3nC)fpw&zhNxawER$4TUJc4zozOp|Ipx^wEvl)z64G;wPU-(Gd|A`R|hei!B%dw zUti1m|09JDrW1p2-MZCs$@vpI{BvcOI*eMs&V=c(u+9@W1T4}lKC~G&Sl<0tGXek~ z89RdF&R16Hh;Zb;ymvDu4MPW|IpJTwXt<%XBtg1>g??lJf{;RF%dCK^Y}bs|a0_8y zzOp(8cc9CXFwU!=%qrnr_HW;O`?F3U58SOil@rMZK+B&0%l$T7sb*`PxVb_MG8d zEF#i~sdX963t``=jR6ai@=K3tOR9-}k)R+U;UAu-VJ7l2%+ERhT0plP_&TzHuSUiI zyGSN{ZRongzK9UY-2!j$o@uVhNNo(9m5fH7(v*a@z+g;8j1v=1THhgX4|D(_m*X)* z3z+NJKeGbkqWO{l>S+fSwN#%p3w#jY+=#kmxx>zz7{Q*%%RXCII<%H|x9K{1z}1&K zy{_d&VIJQadtwz?0+0O;WnE{7)wgVmfx?*Tw}D(@u8s(6H9R!mkslc{QBA?Xx(u*# z>e!1)V>V?cY@?bfoo8cNnUDz#&UeAz*qs0Oj=GIFk;= zYx?cdFqmFE4`@AnbAXe!(1O2qfn@3RAzAZIMIoaZ0h+(`{##yK4oosnlOpfhB2hkmlG)JN=X9B8zs)8|SgFccLBRa|!e8T&{E*V~P=*UWj#6~q6dbLQ*Kk#v+L|9k$Ut(5$_v1M4e$YOC>4TaeUY$g8w*Y~c z)3*kO!G=r;7gH4TS0lrhZPN9)>I}F1Vm7}5p{p|@ z7nu^alxkBs5DswQwKR(YK_j!1nQdrkiwYC=0e-BUvNeY)38Gzgt!Rs42U|D;`EOvX zr^hfKsC3I9JLB}}x3YHUpbU@l7{{4%8NQB1R%lyLA(A^9Q`i{AXj#$ z32}g?h(?klLJkN>gZv$k*J4@&D&;MJ&>^Hb#SAC@Zez=06y8@aBA;7o1O9#%FYAv& z38B>q2zeBs8lD#gNNTBr%Ntg7)cjqI#Pm=tWi84L*T}0eLyo)sVVhbY1r0&=9J}(b zQsUYvPl=TwdOQ?sW?_~FXEu6AOB)uZF#)Vh?P#Ys({T^6DIpsOr5F06H{v5)>A+e(mpl_@IlSk{T=jnn9ISPjhHVaF zR?}(9+p(&kTEQx&$_oJpr$ewWO`?EX6kT5Y%MirgnSSf-z1lkyZXRoqb zv+4@2N~Qyv#ScWr=PZtg)j$SOc(5A%t_FsZx9|v&6=FH)4~2CK|2Ho4+qPQ{=+zA^ z5xr1#(v)yYy8d8Sq5Z57rJ$-YkbhA0w=@dE)UK|c~`k7$lU*rFnS{w$o%VxJ$7Oh^5V2}K}m}vcJ zmVvb|Xc4^Nxl&D5S`0r4M99(&OTOgVR<1YF41SbTbJ)jPd5o99jRi~*1VI2ucr%Eg zplZyc!l||rnxJed2e2p~;~pK<{U6W=Rr6m^qBP2gra;Lh6#KRD*)a)UPbEm?2MJV) zJ{Y9-3K;-$x=tW+BO&_lqCiNXNs%C^3oyLpuIttEAN?%e27tcL~Gb`CFy{EvdR z=Fqzv;MHs=gEf-mFj21 zP=m`EP@R`6QaJ(%;QtM994O;wk$0q>WsAinmxe)G*Of138M{GuJER7Oxft;4m7znv zJvx%my($f29J?wQ->dpxvMrxmRza0j{IdD{m_S)_uVHZ?8-0f!1ym1tDNWZcXU7$! z0x3vY&>-N53HkmC!d^-@fT{lx!o|+8iN^5fB=9ktsNwK9TaSqt$X2<@7t_>kgliVq z9|}OC5s@j*S#sa`=s2tZ)Q+jGmUra$lr5-guDsX+`&W=A?5r6CV*(gEii3K&#bJ5O zLKKFo$}0b_3;-yo+4PnwswbJIDgp?Kd-PKJ^oTl(dp+KIj?N5mTUqlrivKLpbyV?8 z6}RJNY_=|O_5O1RA6SxM&I`30)|an>gl6VGcvw_!bptIKu+1j{Tz3xBAH1d~iMuZhJ3;|UdS}Rq^;f$T}JH7%T}*t|I`es=5~J5%eIp9wxY#vO)qlJ_p3tJVR6`Shcx zUDlR*|0}=y(o`wEkV&vXhC520G|p0aA1Zb$kaZuDZ)Ukh0_D*0w)$#Pc#I@yH1Eya zcIS54**W@1b)-HWm)mw(v_~lQ6^^O$pSEM zWtm-7mtRc%Xev+v>eI~R4K)%Jnwg;&CR~6!3!+%#2FlJdv3yJlka=tX9iYTT0yRAj zeIG93N`lM?hb$+LoIiG23Dw1s5BD|791t_c^@L(_?Y~g%EZJULBzC z)Ch*}Y9uQY2wq_rC$g|>siOrck=nbzA?TZZZY=81e-Ak@YXVp~H>p>G*NC^TTA9u1 zJn{Qu#pMT6?n>DM^FMc- z94U+VcZ`PoFVmNZ@$31@%Bf$V&@ZXVuea_UEk)+qE_Te+f9iBm7&0)5QtCepxbp8j zqu&<2GNK>8>dV`i_$;Y(ZK#8a5aZ#M}_m>trZ8-CLo6g>=l}C>`jN?xsi5pJWT3i+847u8f#4O>v z6)`If+EJZzw1S?Q`CPK?SMJNFmEBB>xQZ@)(-$)I3-8ps`K`=&a;d)6rtI6&sapoN z$wfo3-TW5#XY2cqfBWhg44t$g+S`~qX`eDJe6f0dnBHJNc}5C%$4r;T-#F}Rc>JG_ zx0WcTCW)!4-%%%+XMsXbx4v?iOZIbT^+7`5vgadVkRf@L*dh6NV*+iOYM)N=ZR#@3mE3J5ZPoIsS>+dl5_;X$x znKknL+7Ny@m%35YSrVYhrRTZ*50z7jbHj<(;PpQ+#S6IN+SGSf*$d=6)#h2A;nw2} zU*36bj9$xn`@ZmN4<+Yo`p6NqIAblvQ$nLE1kqux4~K9=cYA|80|`2{x5UpQY^ zY=nFHug!}iw<6Mi7k9@Sd@KDNX^}?_o%Pz(zHM#kY$Nv&f%-}{Zo6>>3r5S4&~y@S}FnkKpV*Nc@~>QON5>&7)h zwiDya?e+_7e;w##p3LmMPo0KViK*$|B%8N$r}}aS6Mvi%#|9nt3GD(@jYYATn;=A^LUs0H;8dCgq>+ zV}4~2A<%E1e77(4pOm_l7gb|Ye-CXZ5@B({EV)$EFnby_#LE4Ihvgc*Yl;-oaK^X$*!+;iEsvz(r|a68fn0y*pb>pu z?VHqe+nK$$Z~pbY4_dQ>7$)@jdyVFHLw~}?e7rjU-%AZT|C<=Xr+ohJs6yQ_7nG|W zPoReXwLgyQZiXI99sz>RQg`3oe0@gig@9DU6{eU&;>4Qq#P@o$5yrO==PU62r=I`5 zANJkMV<`_bpMEz5RLK9PIkpA-qf zzrLUCCY0sz{`2S0CjMu>OpA>hJ!s#j?sO zzIJyr1~Lz~m{Zukkd%{bRB|dg)AUcP!KYyR{rU51Jd0w=+pBeJ*VX;f1@Ap6?Eh8k zkkmO|?dt66I>FQ+Fb}A$(C*y0c2IWYbTkt5fp@M@ut(o-E(WSXJ*6K%FgNzJU~@Yu z*}lo=3H8#IAN6h(|JiD>GaZFz?ai9@M_)vJvJ^!IYG!^de0^4@)U;y0Pe<&Rp`n%( zQTmgWzxQ@blf&MmCVSIvr?;tF(_TXEvLtfoeg6Zw=7D;-sW(Yd#EXXqxAr$>bgXw2EuIv1#_#?pm(sJy0ID)*)k532y2;VNX-X$lMAAFp`wooTNI&WRq3w_6d`8qY9+Nh8(-6QgN1Ubp-yJV4 z-F!^k1t*mhoG$OFslC?p{h(tp;pLtCCV_iD{M|PdSAT?G{Wauy;=Z7z>4EMf**4hM zr#rGl%$gGW;(mN$`r)wJrL$iPC*c9%U;cF+J~REmXQdd&!tMn*lTS9KYxwlqPtWw+ zmHm-ha%jHW`}_O3VSC$U!3?GlrjfBTPC&Z8C@wg&{JgECw-VXoFuL3F&QJZQd+Cpk zB4Z&pF4N%qQLYYhLSg@lSkS@YfYnOIEzWw3!+)TWyDx*TMI-=e=DLGj&`0!w?!ag}E zN$u!hv#gPR@!q}r_fIU1SO&NH))6CWd99ftly+c@~)a#b`^)b zSrYy*=C@GSGffbETI_m6{3LVOUEh23@QdX00TGE()eTbmuI9JDj@P*NGiD$kbLry6 zi!w5qa`ru$4QPw|#>Us}vYn?}BBlkH=DpDoCp3|4?2~!XGuXJ+meKmd@^HgV|GQPA zOXB9i`0D)m_vUwOXX*`K&kbJMOuk|2@BQ?zsGvvxJh8Mg!$+k@xh&nMGSj0nkUHek z)i*p_#ytn4c>gIXyxthc9Yw_3o%_uf>%eXc!G(WKRzi% zx%o_54r~w2xgPZr1P|kruNhoXIjPQ=%F+#xlvX*Zq2I7Wb!JK=QmzHkyHe%2xw-ua zFFfAoau4%sEOdz2CZmoFGMpjbk75SePm})6`@iRk zOv*|N3&)uGN1K}_`L$R`&Q5i+OV0hSUX8hQK#B%4S(Go1aWgeoKC8RI^-JUGZ+AxXE@ai`fuF5q`>Od@yx$*QLxI9xAc#;^TSJS zy?D!xLfg(aOxN&8xnW)fzQ0)DnAY@npXB0mhDzD zj=?tef5K#3g4cV;;Rl=Syw}!DcrthxGJj4JBrs`PHW!Rb%(ho5das*_V>f<&5w8-6 zE|%OW3#OCe3d_0~9o#Y#!8N#B0c3d&sgc*F7E#2f@HAY~;;$(GH%28TCG!)7oh5gU zxl-=NBjbYHClqBqS!yRRq16?O+QGh!n&od&4pR2*lBIFlCV!?UBo_|-J3qnw-DsL? zyr=dx%xpLLgCD1={$^xHNrQuwPcre9(2??$Ur|PeZ9PgE>I|FJN~0vbo?ffKgZ5x5 zgEVWsd+=dHJvdl?^G|T}Wup6vYGvl&Gw$|3o!hCZmfxh(x!wxF&Jh1XM)9lSvjQaI zLi++Wn4Wy9X}s_7&#sKx`T@I%XsI+&B`f^Tt1s*|X9ZpvbtcOY-%xA4iv|`e*;$X7 z8mv6r9ZX6HzSgvxT3uUsYI~qm{`Q)xQtsx|)((B~m-hg5Ilp?uz|}crI5)la**-H? zCa1|*=0tw>68f24wHQOsENx;md;j?CwSPSAor#CjWW8TpTyOd>NoM{Dv?$SWGA@08 zA=S!!BbjIw`0TfHyo-t@GH^He!10JTyJ$&fW!-C+K5srBd@cEqY;X8G|E=i$_d+Z6 zO~>Sc84o`Rla<$Ap$P4eIel&0>pD;#kgTEGH2uMS{h&mZ9W`I?5mUx;`?4pKXoBMqz#dqJ; zd*F`MWPFb5d(o8RFVnBC=^N^6+<)e=x^Cdq=so1|zP`S`=-205#>@^kw6t2&BALg$ zrhMUBgoTOpGxt2dm|WY<@u;9(D?;O>dl0eRQ$cZ|GM&C%v7}p=sp?m}Qc|(`9vQqV zIS`D%bv_M#N~_~loP8F2yVAqSf~wMP^2z)$&ZtxBzilawISYH*^ZA|3L)!qcZ&H-p zH!QEWTUYNVpbQc%sk@>vZ|=BMuLKNV>@5jg6f}AAlnZUBV1+UuFs-sXMK-sns$mG^!3IeY)l{&22yU4GGV z&8+pS=YH<{ex8N>4%mp^G36t9*3G-Tr`*x(CIHN@8vcE!DTwoIOazJTP3(IHOTH?H zeN3S|*9F4b7#&QNc3THz)h82HbksgOC*q!WK(eP7;`F%PHBgx=XX6KxF9hH*bYcyxG5JQcp07zWH2Mt^!v7oZh!;Za#)k83r>LrqRto5f!F{ zZ%{Yd*7>3fFVt^uz|1Wz4xto_R!7)&VZSoP_!UL4D!%3c7CPu~uP7M53PzhkA&BFB z^Wnss7ofx4X0n3nRnXYLL*W~gc)wPtHO&j3DgQ6t>IZ~@fg$r(h6)TF#b1=w-|6PJ zsGDKE&tLi+AWMJYES1N<4w#_Bu`2k`)};!NbN)^~#SVm9(;B_-3)BjZ_g~vdivLbX zfe*h|pR}e~kVUH<_Y(e{srKUYfr=cjM-R_y{C}mcH(!J8up0=0=*o))z#t(@sQ64O zpZLS&IH=>qfB#Nd(;PKCCQ^C{FcLbOn!VK4IR$?5)Q{;yyD%g0+y~?*ACZF~q<+m; zpFi@KDkAwq*r$cBPM2fHL!RmimiCsOW{)WEd`tKNsW`STT(7UpOc;) z^~9H8kd#{vSGTcG;en_oUVMuxPrkWE;ae2Z$w7FOfpHD&OlDmdUzteKq560PUO^-o zRH;M-6DyU*1X+la1NW7O33|P=$_lcm&YJ&Zc)q*jbqMd;;IV|s&+ig4RpJfm%4{|; zJ$gryNl??ZxD|{a8M4hf3 zmWDRY9%_m}30n&h=yEsJB8M5w^s~bZ#=9{5oO@MD?6NZM#!M#FA)f3mk-osC(5Lfe@k!l81dpa1pApMVahj-q2{Z)%GblERZwV3SJ(5!>l60J5 zLpW&f-Vx)3hB<32F4lYC3|N=!cHEC!)_xife(h*)kU!jHFcgWJN>A3!4_cf$nBoR4 zu4sMyMv0TnRP_U5o$P@lblLWr$7$Igt7*{E0cjuZD@gdVxup2Zl7#q4!AqekrxWnc zESP}nU2ub+!69BfMo?{i_G0bh?LpE#hK!u)W{S&4N*?z#4^Igqj~A)~Aj(tIyono3 zlHBa;vwXauUCBVl>xH0JNQ%U1e@h=9uhd@ixmx&H#!^A-Sp3&gViJqS(KHUHsmJnM zpWn*$IvP%A*?t0RQ>u-FC}j#zR@Y2Zl|{)-aBAPS(5D+3iXuh(X8W#Hp2Qct9GErF zZWAXpSx*DFxQR7z=r)I~N>f1B5$+Te-GhliZocG8(uF~huEHamruQv@Q6=wBiQ4i5 z=lVRc${YpS^z00KIf-Y_`cXlH2N$^;6Vld25@O%l)#nW|TfhhSd~4nwK@dSNA_5)Gs(|c4H6B@I ze_87uEK?jFhWaYDfuxiyJm!k2Hm|ZdR&l>KC?UGZoyNKLq)6o_2iQWS3=-mCLOfH} z_odlFOz?=Mg^zgbuW)pig!&+*1P_Lq0i8DxNjK5DaU+x1L2ykDL|%7?x&wFo-~#FJ zdMO%Q;o}!>Xsz@7#K3R%kZh7mh75bZW)Yb8b#^1wGVNtg39b;MlMlOR$5TobWh()8 zY?Tp9=4!xskH>vDElzg&wV4DAR_E;wq}$wx3f zyahZQUq^3$pERqZm6lU4os|qL1dFpq-vg$(ODHBs6Kko|mKFc$#Q%#A;_Mk#QB?lG z0DtJY>GztLy-5?Y8sq4^c5i&^s_kn}d+8K2}M1+$3t?!LIQB26Ktv(eHv@7-f@&d-H+$9bD`& z^^N-PMsb&_q7sw!ziSOCc|eu@i9@q3dj{Gu73Wgl6OPU|Yo|O+Pt*G|Shhn;b|sgl zi_~TXl8C7l8i#KBirV&RuIm8YX_JGHs=RlPsZ&=nD6V2h+uY1AcF9s6D#kpnerIFl z$hGE~4-ruy8(n!cMY&~XOAWtwoS3(_p-HNKIHF-jG#OK5U{V!kx6V!)(CywY9c_Y2 zJAGQ~Wgs0L8Z~b>n=fXH62wIHx|!vY{R{yd!Q=DvAf!kBla@`&RmU#nSqahn=b*i) zBo4#thU$&e!uOd|&2`t0Y>(Z7j6Z`ocbgTY=F`KOtvmLP7_DX^8QfhRt@5wg);(DQ zcT4O$n`OrLDLHS(bD*-o`f>;;lTgbwm|t%<9Kv-dOIa~l!*?`l>|m;Sx!Rt?b0oh{ zdLAhp2;td^lPw+cEkINk)7)aQ$ll48RSye@5-ZYMeNzI7mKxV02_IvxKMytVBjMR& zb3nW=PP|TTw#{5L9TFQAR8nWMj44!v1`lW}JbeCP1(74OM5#dszniqt3%6|~;!z+X zgK#M?Kui`!$jntf>!0E&z9M_6$2WFGa5O4`JGwh{9SjXMol`ihxxXSocd&`28=O|N zTn)E^t?4P+!rDwPubB-NYwf1>8;_>Wd_*O65uA#L>`FP`Z=cp)=cn_HC%N+LPq9Z8 z)^Q%{XjGZ%9|b-*6Gr>oXWUajrQ%fAMzigM$d}-h!T-@VewRbc{kXt8w2JM^@K)k+ z-j0*Y*(l8#-o;B_67FX<2l;fgb~}+qVOG@VCjBOE!>06iO}@vkJOLG1AG!mD0XAB~ zo0ZAyYBqL*_>tB97h6_5&7!f{Bx*G?hV-(2&2Ih>4#--jqF$@+rrYQUSY07bkcXg4 zw{4~mBlPqWS5GAIGR;7hwE7hi5CRE{W5l0a6_bqh+LY4MIUX3m$L9|T0+ENqR~B%t zFsR7YCYj`to;5uZBgio4oEi|=5Pf*L3P|BxBCiF6mF_x-hw)idzWaDKbutj?W$_)x zSFSQiFMr)0Cr4U&Op=j&guv5Eb1_Oj(gc*>FKtU>+QoeN~NSLw4cHRcW6ewuraz zwG^H1P90aLEPGHvMm#*BmSm5YBqzswNOi9HLd%6jW!JCArOtbWS4S5`%Z@i|W=ZRT zXO^xEwu^d%38nd7iC<)_qN$X2HZOZ^M!e&+a~Gki_z-p;d-K?JmzSJbK19po!?j1H7ac%2QUd6^dK3$$F+n-6uDR3?0 z8Z=Q*KYYcZ#b$Enh^#s%OiYZR)j>$(4v^f*7_?2TQl4Euayd>^y&A8*a4`q1?IL&j zOm);X)VA;!husX=*Z zPlkHUo*ElX#GR?By7&!eo%EYUg#ynQ&Ri$kKm|le?J5^~GO*7z#5nt!R2;`|<-jM( z)>daUu^ablHe9jB!C=WGCgOA`@SRu8dxcjtyIIt87G+ab@KTHBz`r$(2^48P(- z3BThLE)rj`ZC#bAJBfAQ{aM=Y2hv7rI%g~gAiHugjj_+*oc>`$tEL$T`ito}KQJ7X z^<`*8f7hB<-gWxD>z<$ov{~CTyv|qc1s{_#@? zvFp#_L?yiaQ?L3b^ZO?AJ#W}&e7*?V)t_iV`(&Lbn%f5<4v=+2GK}l-R+K}G@`nw6 z?l#xjWfasM!!npc=<y=nG&mO9V2mkWz)u9k+NA&2C*9GT$>01!o^r*BA zUap6p28*bC(;OxX#f^_GR{6ncIg1@6!2yFcZS@%*8_yNl*&J6stv?}MM`1lUrf|O( zFtpuGaJ|LqkEAN_>0jZ#7HF`iCs(^2FO+WLnC0Z;W3%^`I9-Kguth9A(E%eGT*K^&3Bi%f$d@&QKc}7)?C5& zNp_ut2y%Mnh}k?V3a-^NDWNxf^FSGm#Kpm}Dy@U%LH9_Dv3;buV`?2tKa0Mw99@Kwm?agnl#tCjJps(s9<> zP+muWE}tN{MoxhI?sSm0khA+tpHdW`erx^I0hDfH-5(XT5bri*5+D@w_DL<>fNG1s zY(vai9w^vn>kyG9aZ}w6?R+s)U>oa~mfYYw)k=ezoM13=kO@DP=x#3HmMEBf;Zp#e zgsyON8Y(vCghK6gJ1gzvYR+7MLfqrMAa&PD{^UVuNizILb4IKvbgE&(V4vDTz`Ctq z?o`}^Al-7QDZ5cBmUJ%^BB(oT=d?r3+kdXC$|-{YzZ4f-V|P9ox954k@Y-2^WnJLG zHU#nX$~NK zq3R*s?dlIB2_Lkuwr!<6{$%|+tIAQ#u)Yvc@^U)a@8ah?dI)5#d3$~^B$9&arLk0< zLecS{LI@T{uf{i@7;Y&>EvR4y@!18gqyqc__*~k2+9;9q`5sX%-NAZWk%`F5yh8-R zN80rsXfGXwRZ4aKzN@xPOB0|S2A~ZA`XG!mx|sc&!+H!X$}uldV=UNxmEo2NO zxaPdKNxpAvEu~P{A5w(as;_pKkV^M{Uh@I}X4iI(r?No>F*N1_t4{Mck1 zlxO`qZ4wOlE9y*~q;9FCyhLD^T)im58L2XmS^nN9ejcOsH9-?pvdRTiP7RycAFPhe z9->w^$sAg%e2GH2dPiD>tYeZN-``ZRj<=9k+(GaCiW4QHJKuQo=UAy-p(EHYs4I;Pl*^1*%$~)Y-$Nq*{TENS*;e*Lmd^5m-x0F zHp#$Q-Hz9%HENuVjHqN43~#{50@J@~v2P?*fe_;ou88fO`^KS^aiuD%jJopY*>=h$ z*YIVbt1_!C?$VWY`dTYEV3+uNkEIzdZ??AnBPas8oj~U8=T{*RMp4lgO)J!!6Y|F6 z(claGo3p9vpTD68KI(BQ6ofbL9;hQ^mZCs^Bl<5J2a4E90rKysdrGu(#Sb_0q38zBYU__N9p zyFYZf5x#rOnw3KfoZh^N^gHJZ#`g#CGk4nM&Y;yNrE7%_wqgz*goI{A@pzax-Oujcfc?lj^?>WvA!OL)S)V+lf!IYSU(V*{{sn zC_Cp!#$V|+_|F=c{XBXiw1WKr4WQh;zH}>Pl%>ELFb~~77+otG7xmVcAYHLJm!C>A zJ6anUd^LD*bhcAfFv25^4%INDMHwM9AmnHL+|nE2O#bVX&xvHA7-(D0EWp6bZUR}> zScUi-)}@;2cQRx9$2UU^bbk^*&YUhfCiT*$_yoAvOzur;6V}4tV&#qjLlw90%B{9Y zpNpTUH7v<2uZ^ZeHrVE-?5ozE_JYp?yb&?#U?Y2+h9cVqwTz8M5H8wti#3U2hmFsD zFLw=voJ68sNrz@oa^P|wZ4(aT>O8~PKL_zRRccXAoCMp|vEKt85_P?PN)k-{9T)GsEEC5mcrw?$vgVvj}UCl1Ppg_9&Ha7m#1)*km` z2Pu=KGgV3#SKOkU$&`SjnwCg-@Z_p+D@1!THe_V+qyDijvs7q0(O)_`0AP}f2d$e2 zw|TRUY_IuV%sASa()MeOkngRleH`Qh9Kb}XUk#Bzp$-H1(;4w9;c(gbO}`;~h;GyJ zm=*IzB!P&+H#H`S?rD&<_n@qNP|WHvjqel^LOo+WyljSK9zJp4-vV)M`!u$;WGgCI zW*fWb+4B#)}^G6azUbgU4$Vz|B{yF>&d8wmyjj|u10atRbDX?P!3l;% zrHNG2<*~bun3Ldk%@IXe%0N_wH3(1_39^^-k%zLo?xplzRv;2_j9X%X}7MaGbYY*bZf zC3*tW>N5CMC`!kbV(L-*VV3H~17IL+VC3Sg27OH?SBEG@pIT`qk3tjSYe^e@zL?nN$Cnk+i)`;_qLEjlc?Zms5QYa z4xaoTj5A)j%g8ZH(3%%ZAjBqdtUT|NnCpz13Cl2f1tm3~m7Yl2Sq1yP2N{7Q;V8|} zP84Yl`UZ?(4^C?N}pI!NAAB141;vUe@g#SRi)-^zmw5|9dLJi_q zW_=eq>@e~H`llZsEWSc;{&CLY`feSOQFuh~h{%!{iCfL?J8wxqbBXo7Ygkn+D@qA* zRS19=?AC{}Q1KZj3iSg4b-RimkhX*754=bo{nE5k(L38NpvONJ$x&L;iXs(%d0 zu_tHA!`ikjccX}>7>|eXn z{KaU(u8(d10aylPfb^$F2Hm6n$X&BLqE(feP8s7pe_5rInDXR6ak+jfd(f4UMDO$f z)5Vx4;q|-^^;NT>-{oLs^Oa8T0@ROd#tAo0y7Gzck(FQ>@u8dI(dL}@=+UO8Uhvul z&N*AAh4Pt{hP#C_8yDZP@4=5;EBHO`rym_j(tP3w9jtPp55UI9gYS{-v=mp=|AEB* zTioX#wKo}vc+?58kR0sRz%o4^dV;g%SV7ToIf8j=kpz17K_sy~v~~>@2`8HjnA#hw z{LQh0PRxPn6LK#S&wIS`gE!-o>6VOeF4&-WO{U#`>~ZxG27E}j=K4aNDOxks&2JL# z8GzcDZc!PK8I_EabXr;8D{04)QpsivEy!>fuF4v}?l+^jp5U?~RXMN-k-9;8|G4J= z4br=@1e04HWJK-R=auQ#*Gm*Vw$RTEpV6QCPRb>Ksp;~|NlI?nAobs3FwB}!0E2!1 z`?}Z04k=aoDHYnu723G%O*V;)j;{{;z7oDz=8M>EoLXf#PZ=8KCB1muQuMgyRlLY` z3yD%a-JwZgZcZKyfLgfHm!@9VJG?*7BV+MESA626NLqGCD556vq=mUnAnDlTmEMfC z&b}Tm{YpE!8mkSz&hPU_@z(6biR}2&c$sV+6ov*S@PvfTJB`@f>V&E?96GN|< zT*?89JYSG(Q$c;3>cl^KRvVsMW1_=&8z)W>k`Q{4qyOpJ%4Xa7#aqDy-Lmr44rw0UT(xa?cK|l@*wT)@{;jWTiZU(W zT=d**R%zPwznpdrjMU;4d@f(hp@T1|J(c~s#+Z-eF=1_Hr6X5&WMkn}59ODsc8z5_ zOB;GKfDTU*=<4<||`M)u?AksL+nKXo;*OFxfP!#y7o= zYAzS9v3!#acox|cbm~H7upc&3rC7`3hHbCOZ9P$Db_~0Y&ih~#kI}|A#W#NTmbw-J zU$9D-zZ;u_gra`A_Swz=4q9IK_h6%}w%ioWQisYZ)|q;_Zes_~$krE#c_FY=?rl%L z=K-ZGw0$n~{ADEg^`NGl(UI&XzB1AzQ!I^UyPI3{!jsLOP>0H}#(x;*+(RIMu5$Wa zYj_SJUq?k`mps%=R!vTkl9wFyhnc)(nxDkJAP+fBP5F(24Zz><*wdoN9?zB;Al2^q z8%d>wnz*ZGmIJst$$(5gC!%I2pI7{pj)ABDOsE8BLc>aezinkv&ip46!NZnsP5Is@ z7q45sUMLDr7-o=0LTr)>9E4+v&UH2q5fA1*Jbj*^Zu2cKT-d^BbEz*AayMC1BYB@o zeCp)qCtukz4M}IwYhN=9H5gl0SbW00E|)yvClr3kQRrOd{vKRE3}%O%S-tY;=g|m8 z4BE6>3^DCJReXc1CufyZC-oT}3TaXC!RFOo7NEUV(VKlihm{Rmk3Eg| z_Bu4YdxHpa1yAT>A9~X8sy>qG{xGW4v8M#ewtBQ&aBFl(68s@o=6AMRw%pd z2;u(%yiX(_Pn&06J0m>Fl_NPfl{~Yhr>ZxHyI~~3{fmU;I#h~!6uW1eess5X)HleL z2l-oxi6j*j8qj5!ixqA|YOh=vzvoJvEcd!1TfFMx4DCgYj~s-9um@870ma7iB1vVI zA2154055?6=(3l||2x;?mXLi!I6PYBOUWu#j-D8UOuop;lCi#X&?U&4$x?MGr2uN| zUb09IFUuf4@rRPZwdmRk`ZoQBbIH0x9=Qd^^F=(O-lnjr((1`A2{35V#wCLh*AW}~ zh3Jl22>})dl1JJG)NR+r-$99o;oX;_!F*FYAEGL)*4*L+{3Y`K*!Zt zgp%?og$Fhw`vhxg-v%W^(4u8UiScB)>1-Wf`vOIS$DerqXX@ymE;l?mu;MYL%nx_G zUCJSVEdqgP7_EYBO;Lm{tmTy5j)tTG^6#T@crD?!T?Q*1Qa$;SlFl^X*Z9~>#F$%E+Db6JP+TD;<9oSStK($|C5CqN_Xr1j$u9qdT@;wx<*E-~gWElh5HcgQ`QWO>Mn2zq~`g zNRoeI4vl|{IheLZrAcMc-y_q(2bQ&zE_wvEeM80`c|MWt>@1JrjZpH9hmgEl+5zI&&s@Thn&)-qVE?NE)psg1n$HfY?CS1bQQUiD&o zc7`}~D=n54FE~*86pAqh$fCT zi>7d2SN^nAi3{4q%<;|=zi0F2y{lP!U{|^7C99?wd1@kc1>}-|wJDtp#O=m^D zs+&h=0KiPnZHWE@fY`xUw*aVLJ}TXulO+1+&M)@pH_qY$7%TP{e|{A(5SLQ@D{J)| z%K#zH82NV80RPK>R7Y+OgFH$(So-1n%OmZY$>Ia{a$>vV-jI4G8x>X3(D~JWsUh(= z?W5se5&ZMbH`je$XWf)won)Y!WXMop>w03bo0t}g-th)>-RsSC1U4CEFRDJ;WuBhZ zcc3aebek*|v~ib@s5$IA77C+C&Cu`qMqW>spengD`vU4qUf-r=Cxw+Or|t0i3~0K9 z6*|jvfh0Ov@wjjLHfm=s418B*tzgPo_L4h_-l-_waqhU7U+^^0Y#5=4_KH?b zRYPPi7iC}f;$oN7aU{{#RN%q=KLd?L2Ri(#B4M3ZF=eelOu8%rze1XkzV}85nq7q2 z_IfIYk1B=VMKOn9qTz6BP zV_nW-Nd03x|FdXPcYT$2c;L+iNTpYELxM4CstI3G7ff5RR6d4_&)VvLEc9<2`1sOseK& zD*I_yk);m?4{f*ypH3AH1ueB@UM$Xsb2ewxJJ;FkQo@OQo5;_>SlqOc$IKwKu!p#N z2W#)lb9fDEIOsZ7P@;HpC$Il8MY9YLZv5#jUbO*-%(sKhUW(k!p4_oGNG?hSN^wsMJ}EnppBh&%iRGz=G) zlTFi=`4VKtQ2+o#Ah`W94BX-?Oof3Y-LK=TH790^fq8{)4vD zZeyN;u-MXZRL^P)SS42;BGFn%K6L)M_bOPIUpFaLnZzX!dv0&|q?~z6PhUxn@YTSX zbLQNdz`B022ra(hhpje7x{k34q6$0|#K(^q45T=n19fyTy67j!4lw=I{F>Hly#d)j z?*~rLaA>ly%${#S3(Brf)fISK=G(Ex$z8SIgO>5$gb&9j$~o-IgRgN)(PX+dM1aZ4 zY}1b9XcL`s#H^HqvSLoJvov!~&{wdLP-~c!p*w#7T0)c>gouHm)s*V~QtlMH&%=?6 zSDgllPE5-kD@T;ad9qiE&Hh^z4*@Zh!qf#EUY{pVQ)RGi_?iGzz}tGAreE`cO2J)QJ2jeaL~*`(8IDgPV?pS;n_XQoux4j5U+U!?804IT?m{?!W=ulI{QO=Va z3n$X$TDG5sM=O)l2{Un!6{Qr(WA<}f4&ex?F4C?a!#~p`#OEv%@h5S)E9y9ei{X5? zNwh+1+P^y5jVvJJYbo*7m1M#;P!KZ}Cn%ZM^9f4-+{Qzf8-2-p0lMC*!#lpA5*-@$ zX?*BWT*HBYp_ce+TGD&o$4N0<=^pe2q~F17?8Gb^yG1~$SkMRJBmQQg0FBs{R40E0Nb#<#2UA> zt^Twby^=uQX#Tch26xF(vbt*kgwf+VltA%ZSj}%RH;*lC<6&W$MzU?^TS`BZILnB~ z`r{^SsN0k?cyfO1Bg0zTp`+;ATj6e9X#Oh4`ZZSCK#Zs6S@K8Hu&ws(s@GQBO_b+i zuvy@e$!_RKL0)~;{DA2v@m%!CF@<%-Jsk|BO45HEa{sNfy;QJ`CVn{81d&83sra7T z)4z}VwoTZ5oY0K+#RFV8Z8TUE&hw^J%wBypD2Tc5YS=~q^Y8dWb%6i1!dBqzpNj<- zf=tD4hlm31s(kOymIUCy1orJs*0j-d<3~oaaZf5aQgU`;Y79hjhmx zb;_0HfIoSkqS)8wL?KKhVP9caiG+U_X2w^y_FpBddlB!ix4OJpFg?tuvkbJ3UNgM! zE-yrc-hnoBjDF$}Z}aNFu?PzfZ!p4b>UUif0Bl1by-xoZPXsb0d}vjDIg762Eh*l~ zW7`MhPBe|{P<2YoHLse>9bi{-Jj>8?QkFNVF^xOU@X5_h9il$~Bt8K6{E~1D^z=sZ zwSh*A!DIikC4w2&7Q#WgoL<>5qdqWrLh(p|vtHvNdl%tLz$BP)M$uuYl7(sZXL@dQ zR!6-wKyrA2D?5MQU#=Wt;iRM)8VFSF)xJ?pHwb#%m?f&~c8dEEVyQPi5!_!qSOH}8 zhm$j)Bd~G{c{LN}@pNZ_b9)n92X~b3MEs)e37se!P3o>MO98Dw_E1NhuD6bci2Tft zdJ^ZJ8|M9%hxVqZ*UEu;~ad(c2pgUl5-QL3k|h__6^EF`-W%Ba*?&RcxFW{{!t~F z!OCA0Y3dWz!nRNp1QYEXekJ=Nrw72~xBX9ae8~RF`-g1-;hP@1fF6hZj%JPR zy_jb9F?_{7y)jnqX6QMeGKFVkH)R(~ksG zy@}%#NDXPqM>|T*y^|Rxs46eF08hdjvD2gF9j?au$W&{Q%1j5}Tj_0!%A{C73dHz` zq?C2-{f*%9W?cv4^=k#bo?)pJHa6{o9QnU*DrkIjs@!57c!vW!P-yS_Y8iq$|y`TmS|mrMWnI>2a480JKdsqqzMX(-`zgY|twQmA~TkF7H=i%SnQ zl|!F>3{hnNl*z?2^eF!6;2cOLDkO;HEOx?1OU2i=ie_0ck}MWy=Pd~K@uMGEXgFzV z3b4@Hn0*sOjqZxnFi+xYKDzVA2w`n0zJmPsF8Zet0`1=#AslS@Joi#zAH+-+g2q_I z!Fe$aq`$ok#f*dzp|ODx5eA!us(F^P&QLFG^1)LYB$<=xvE5GXhmYv^)+_~-wV#de z9^L7P1&pxE$KJuhErT-AiWt5?hFTm8^V88N7uViV7VNz5Sc8lH${I`H{y+BO|Clxg zMZrJp&&M_r-yPvR&5+uOL&cH!!*4k^z_iG!X-lLG%IMJ_|Osk>5~Q_J!1FIY}? zw3&zBj1wm;JsaW{k^f0_@19%gZ5UQ-p)m#eQry@q3O`INA!?bAo`|S*P6TAAoh{}s zI~AvHd_8ru>W;pu$B#WXUQEIwwaSem^1o4YBPM5#G0RQ0Zjbig4v4mYI3VCT9I~tC zoSd6?5s21NV;|^_T)Rq@_WqqmrYRF_mAj4gJ~qA`f&c%(Vz&wi7NNK67zi@|ZLnx6 zsHm`{sJY9%!_|TCK>=*D;RI_ed5Za2LOQP6TEkk{&&!vE{?(E*W$aTS^cIx0)rh~G z0jQTQZg^9%McAV>@!5KDrPZsO2Re|If zR{%WdE&iSk)Zpjj*H3tqAsDQ=(`57d>mU|__XWVd?}jJOE`G0-%}mchZwM8=9MRC+ z@uM-+bXd#gyM+RRp#MR_j(568XiN1HL_M>wzR4bb?gYpQK|eTNFuv3_1>2mSkQe(@ zTObNPAJ~}+_zZtoPn~I{Tz_GOCHwv+MNE?$XBYqJ9up5TK>gA0iN44F4Pm~M4R204 zxV>sBELF#OJ6je*(0=`x%f2)-u|8gTE9&PZH{=BtA|}^;7M_D)H}bVHuhawuO{x-*_eI;Ias}kgLT% zwmvy(3*5^HE+IN&ebcd$7e;v_c_&}jEoyu$l?@-IAY*}({uMHSRb8K=%hPFM%Nw(( zAF(N-AChsvkGP2BY2cQmU$H@Hi808YA;viV*%7;XOJ3ppC9)d}DURIX!exT3V( zEJ}X1#AsOJXq4;Gp9)8d3q~c0!#NlD8aV{&=f5+sD1@s*B15kMJgpHX9^s= z4fIIf#0~>`X;(`&hY~Ae#tG2I=yTIZk!X8CYD&a`;FiBIVaOHp1GW%tpv=Zf>7Gfk zb^XAPd|2r=F0sk?pYHjyg6^i<%pE92Su7`M#d>u!KISKEI|^srYT?2dHkBf-vWNC9 zM_=x`{jH__m$_OGEZwpz>Up-{BsHOueaog=AlY^mP0~@ewU_YvoeyInF+?H3@oc3Z zbbZKTW7W*xPJZgeD9dPA9omY0*;9a5;A*2Yj=%IdyG=6hDp@7W8p-=iVCt#z6CF3T zCmG`6b18|T{u%}esTi^M?KTk5VnrqK9c6jQ@;3>k{yz8yVqOPUfaQuw!<=C@*FivS z^}o~@FG(L1&2M-_9`XjaOXsj%1+h|T9XVblIzV13_~j%HmkTBwKs9aSiwaT>pfbhRpB-Wk0E~K z)97)gY>e`GA5$H-=a%qxsbZuU-WjSt=F&OKGdr|-+1!%$LW>ZvM`9qj=2;Vc(*Q~h zvwGVX>*>19+NSglw7bQRnq5ifB44Or8wGyw6Hem3i)@rBOQ_02viHve;{WspmTjEI zGSJ$6aGaeqgJ177E>|mq^j(`tu0{d+5%o5Ia)&$fE*XFCsdCv1=(>iU>IU&{gG=e*~OC4w!mdm%N+xI_exo&|F zpstKi_|YR_!cqA|xHGQEE0xLA4-rdfl7v;2Mg96E@o%H5&Jjb@vYv5_Ebns2FH*Um zD(VWWlk9yF`7@OX!4TlRN3pN;f7H+Bj!#a4;bwaatvep)9}VoCl&sqGw2tBLW=7@zv8LM}Q9skh8!jq(5~(m71w|hF`OxVmLA#5$ zqg4-t$kx%DSjk)}no|BK`sFi_NqCWwynI+N%LKc=W6|D?k?7p;JD|4~Vxtf^CA`P2 z{NdU`K}<$8%VLcf=yU7s;tb^R9u(R6-uJIQ_BF<+#Tgosu-lo2!cYoJN(4dD(zPie zwhIBGK-a5{Z%>KXc-HkD`}cS0CHp_Ii_O!^vg304b-_rZSKokG3NClNO<`ggX~yD` zRDL;m3n;w99$ne%G6C~AA1(Zn_IlB2PA$gD{%?s+tueH-UL{R;$O?hbX9bh zIek0cta5tWK6edTZ^_KA@8`nk%xyb35}aLtZn_4!S{Dr`zkTQZB#3#a{8DS}!QrSc zhPl&Atc?RAe~t}l4Lk`m5j0Y*Nu@Np_w7hjngVF9R_|w$QjG2*hK0OhwBFCaPpezl z1|fWHcEp*q8c+4eQ=>c)I<;6FV^0iI;7Ok91@b{9?E=Z0UI4FG-JhcvVnAC-JEXrf99CKgck z5i4O^K6nxLFuT+5*nqOg49|c18(m$_|gJqv! zuSzSpqqW%s{pE$a!tj6e>^ASRf}y+_>xg8}5oJI;$_$^d$j?9gi4)X*4lf*(Fv^H@ zKihM}S(IM<8RQQWOQW%a`>j;)7&bRybhdZDlaMH4%ga{a`goFyu?pPlnqUnlA0j^r zm3fp03hNJ9uHPym751+}^-bfB#;=T`4jOWvhm{s$O&gaNZFi#Cejd%i6uPN*X^h@W z+e>>sqRJ-skP`dt5{DfzsmXKM1Iwi=Jx% z^ZzL@0&mVsdi!&jIE{y@NH>{xSbUAkdc3XTJ8oZ^Sy*eOU(C415EysGoP%?dfJ?yQ z2}0FZq}MWTg^%nLy+2FCos*FikXL}aIZ_ZJGDQDsq!s-lv7P(H0pfjh=$}!XH&}oM zeNtjJ-gkak{>h#)M`x==mgy2Uy3eN!J^Fc3SFsGfp7rW>D1r4M`Ei|$rkSpcKYLCd z?K}gdeL!CdOfCR}|DR1S5`ey`rhj>104)27nLX*%KQA-p0JKK=Tk{jJ`~Q*@wSKmy zftV^~PM1Ry>G$Ga2;DO2XdEC}xzkXGhml8QXB;0-Hv^Mbw0+*5O5r5jCIk->qRuXp z_DmONo5jslm3E!&U!X|eqEG~&Zz~C}n$v>Nn^C8g5z$9vkyLw=G>837h->GSo0d#J zduD^>_swYJd8EF9{v5F{F@N^}gHTLH8$<*K26NF;X3QBhbjmt;1>0W^{uKT*4rhX3 zL~3tl#099bvT{Xjy9xc3318%{)0O7Z^`X@4v^ULFg-3h!+1o}wUN-o%$|!^Mj;NQF#Dx$&53$1~(7$B?#sHkYOFVDHvR@!*M z_DnFH{8Kn%p-Q!N+TonGx_;RNkz+x(4CJBeR(+#;OupsZkSrQmf@3Z_JZj6oODa7T za8=T|^PR76?%P~CQ7de|N?~Dq+7OWkL>g#?@(T4W_$h|9Ey8$q8y*8Mvsn(5uhPTvS|KG{-k&MB75s{)x*X;q$6^cgWRl?GL`G<36(*dImzK%zjX#;DT5H>JmR8KQ$Ik& zdG=Z;{Y5QZ`TQYSn2-nlkex47Ogsfib9RPHlLcpkWKfCIiaycpN2lYhN)i^zwzM|( zJ{C`qlyp}%${An(oL31B<*;Pfrgk$wYfnqr%RHF~Rt*vL(1>UN8Za1=K6%Z|YGv&FWGVs$i3CF_3z*I&+<%%fu3CsXUqd;OS7`G$11e80On@dSg0`G996!HERmwabo zV6i>aYGbNqzrGyfn8ei+c(>C-kyf(p@f`!D_C~W%r3n1reFXSl0OLbWMa~<5tpivg zCgNQ4hKeI-egt($k2Ohx+{~3;g=ptC8^qh85nX{%51u7qTw2;!V{5m?Yr;a6t%`8g z+@Vsic=g*jbmb5E;%RWQGaFEZ6Bkwf5jXt>1KiWm=@=+x>OtVjj7n#C3yw6}{z(G;le zxS3ZIaXd0j9}%_o`JBfkX&|VoUzC0@G0A^SyZzTuO%nC1k*i?ii@P{&tCR5sv65Dx zHPix`OzJiWi_W;R4XLiKg(HdxZHH)YwC~y6#sGOeGd93q=aXn5Y5=t{zr5qW7;GmP zN~sDDpW~xn&46@hin!H3oq_i&rVok99Lg=NFP(Gppgg4bPvI)Q=;virOj10yp;<}Q zE+tu&-CsS-DLgQ^BHQMcb9aQ5vANsm z?xQTqYc14O9Akk$OXcRgGcDXMFR?gxvIQ^1+AVjvcvW{{+gs5B-KLE7Z;xvC0Emes zSnc3rUBbKX!0SqK#7(xqZWG#pStZJde;BG#jRhQ6$zSD1LjSl9Ys9MfoRY>t)tII1 zHvF)=M2*>{*!cxjGyXd2?vslNf!`sk{=Q5g=v&ke?DF4J>H4C~W&zq5t4`x|wYbvm z0q04v9WhHeq84;dNOrt36#3e`E4i_svVZ3tKf!G5*suHHluq-+2g&}Uci)n`-N#l3DGJIjtTp5SxC z`Kl6Us6yL^s!5%xZwadV^8-Py{GX9qT>?e3$1lrt!Be3Rly^Uk?K7sHu+#0cgA&Wa zFaz@mUV5Qm*C-Y);N&AR-LZ82ba#EY^-rh6LNvYGLJLYdS_ZgUc+Imm?4>QJ0ELhr z!)p~TzN~7dr`~qD4x1u-JQlci`9dGpF)t^2xo*fSK;F+WT;!ORhXhvPW#%V(1 zy#eD>&EgW2AC6@g4(~|{YkoVzFcUt;wF7;^68d22K+C$x*wAT(i)lx;`Rj|uj_dXK zx*9^rg%w7q!(o7@ll>>~J3UZxY&2{`j&!(dxcNE!`83yY8{@YylErJH&^Tij{_1B` z4VSRatxeqNw=E2uv-yQyU~K+Qg_mB>(ZLcD;CG&6uMVs%w|hLM-Bi}6%*GV=yc!-3 zs8VeE&%7Ia#K03;G-HKY6T*>QSN&PLD|vHgl=sD{l4e^;3h_&5#9!-q;?Dn8fJ&$b z8tm=O)9Sv8wp+7wf|lq`*V4&nzX7Z2mD%sgtT(n-_rc0u|F8DmJFLm|X%|INS)z!F zh>C!UNCy!WLbo8*1PHw8$$ZE)3w zl25bqTcuGKj?*abu5!L8+*ss$SIC`5C&qdDp_Rs>2{y*|lhriW`4vvit z1>J~qMo>Eh{h+Frd^$>+_MWN_0)q#0tn0$#F_NynRRl+OoY%S>=DsZ!E^%0G%jV^n z<7PR(uv#DMD#`LxTQ%ZZJieBU?K~X%`oT61;JkRP=FR$qaL<#d#U1D{7w2hu{%p#C zhNrotSmjb(%@$Ca|Nm6NzK@Y5EoN04=IA5OIzaT_ala!_}0Z{Fxm79A{oi9BD#d>6K= z(yfuXflkensT8lCn`g_?6sTt=W{h*dbWQ4I6=x!%{kB#LF2GNXaZixG5dNblv-lDiKh-#=mX>2R1nD$3(S?R43g2mGYpyHRJgTNV0r6 z+{I>CV5ct0HipPSn7?5A)@Xhmtib5TBB}9AOg47~!Xzqb!vDYtf0!4YQPcgNo4w^@ z;zN!fy2b&gvs-B;Cyc!6bW=)8GfE24a6OGLve%Vnqnyiw|1@j?hB(S`&{8-71y75| z*k(|a$f1$6E?yr>ya?VFxk>;+##uAxOU%MsIXO{Ey$(x*8U}vpA`aNU z5|6A+z$L)^P`^3=XfUjURc$&Ch(tcb4dz|cZ8^^ObkS7o-WhK;c1Gk1)JEU?-xV)P zA3&XVEm<{~(4PxlR4cx0II7;pW63>!>EdVfBk*0ekJ4!5#>NJlLfpfL4}o)5WDAu5 zz=Bs0mLv~;3E#alC2rv3B`4hscn0~XxF?#5pVrdHy)2PA-my>xg?bTJyB{l#emZ77lS!q_fsFsk? zDdsER9YX2k0$=w!w9QE4Ny9m#770mH#S!1B^+vu~ z;yqp4MH$fG+BZ~GziBG>)ZF&U8{WwRj|_h0AbNTi!V1!W^dgYJJW`J4TwTMV`)2y^ z=eQREu8D~wkLCjjn-v8lBr#en2J_!kh{x-f7;CgT;Ng@4V6&gq767~4%WQkMRn4?V zH5=KzPYsM_kD?*V1TT}mA5f47_2`N0h`2aUw&}DQT3_jpRpT++QtB!}&h;{r4L1y} zvu8JVx<^=i+NN%*io&={sSr)HLBSBiQdZ$99iEq^3w;Y7P|`fhQXZq~$M$s=Kh6?d zlID+m{-#6MO#3T8*4hQml0AOVjrW*LarL{51cuDYRZ9G}yTmq{TL|}ZX4%YChEVci zp1r9#W|v&M(M9&3ok=tM5tcw#(?74B94|JNt9f*;LH7V1wxF)v_8K)lI@-G!V!^xo z;|C(18UGCA_rYlBIXB{Ia3v`ksz6O9rJ9LfpLxw05dNXwXZL#}Z#??5tV-W%h0wr8 z-G;xrEWCs^FS#K!Fi&XT=a;(ZX~*?g3_n0QnR_ah=NA2{SXQQ>=~QAsuzkN~HjDgiD_K{DVr; z-RKTSyS;a!QxCCq2l#pd>EL8Lg!%B2yhXdU#^ZZ>V!Ot&ph2&)hrGEVcfKGWcx)X~OuLPpuwvRT7(HR) zYQ4Ugn+K7SEV6}{9?J1N%X=MVw~t{9+hGnUzLtu6bcYwxzRh{Gk{2Ln%HWOipEH4& zlXPWO0>;NjOKUWDQ(sF@$Lr_F0S<=?m0?8X=kmGDt&jSZ-h-rgj$2=vjhVNze^F5$ zkJy5?H4M7R)#w2ADD1Z^*w1?nw*WjGwAZ6VT-ScW9acj>1N?_P8elg$Z@5N}Yx1i@ zk=U*gl%Ngk?W1h$afZ%UfcEo)kKHUUcqRKMAXW7AnIg-00(*oJAHrp&em<2>(2Mrt zvLVN1*@CbBFKRues+gS97AP%O`9Z@QE0qVS{`-Nk5$m`6Z7?vxFtnsSKC_=rjN0-b zKIDKw!_3=jj*exedfs5;2Ol4)z1~igpJO^~i2Yuc51T7xubD@vEIQi3E9hv~eLwo0 zH>`cp$!4ksbVK?yXj^3zPD^WpnfFFD)anHmhoSMTtD?(~#UzPHfO$K}VX3c~8&Co) zOR3v#Lv!q5K(${LLB5RL2y`VEe{LQS5^4|uuP#w&Uapn^;$=2+b;id;a{!ve+6U%< zr~F{nk^>D6Qs7pPlrWRgd#&ES7Q||UEr-!to-66=6XcaM=KT5{pXeLYi_TxT;EyS` z0MT14jh+3$5l_jq{>*IE))J-i*;+ZYn|^sSlZ9D&m4lZ#Ap*X15cDoHbEtkr@Jd@4 z{i1!K0ZBYINR8`73)$8(7;t}_WqwW~f4Uk7_<>~>b^7b!a4QUkS|I0F8|FN*U8tYz zJtLDT`U+ttet&6|c}im`eki`kYFuUYjNxQ086MHVnsYPy;(UGMMY_fLTwfX{RzO`J z*%UwxtgWcV1W`LI{qz{G7k2t;jX^l45X2`_@aXxfq^V_+@qFFON8Mrv9oF`!M@*o- zQL{;-A0J|%Q!NOKAM84?jIg+zYBd>j9u-3MD<|S8{*;5|N0V6`v%SZ_|3jXPc=6(6zz|9m27KCoX+`Heu2-rP*bJn-Xtb2F z6Xn-Wmf&o@;QC5>vBC>RRw$ttvsjQ6$P*{yn@;WE-<%7fEgm&{G{~E2i*Xr8@mA73 zJg0uJ(@_uk`b%agg>{9WJ*#)e^qlMn3EPx*7Q>TLQ=5E4dA8CP%Y+h;k~ssxPTFlX z?-oMkLw=Vc+K*A6(>H-Q?JXM|+?{ztS0<^tX+&xCfDM7s!nxP$HTGO?`*E#I1 zjLw;*dOYUi!|$#a{A&5$&M6^LUhq&57E4LAAlO<-yQx~BVRv0cnXYAdw}`x{F&u0H9g6xk8Q=_Qak5mlX6A1?vO5JCpQQvWwxz_6^v=`9BkGrNE#9rz(Ef*DgK4;DNno^jAXQX$^P zao&E^Ip(=qVemW8W~bqL>cg-`SvNOCySu!lruvK9SFWt&t^eBW55BNyHklT-bZ*;d z{ZuIsIi~(Wz#_lfK#)%$AA7MQt6iK0Um;dbkIAVtap5f>?2M2IrHWPe;mze z?7(8b0SCIj)(j^8afSS5H4!3CC0SiUR&6OWhu%iuQ&XxP=SPbishcCH+ayFx&15nKG$X2Z+FS{WI(@f27-#_Uy-M)R$z(x3rqp;e{yq;+< z8!;e%TpBT?L2=aJWy%+?M+4j5JevRknM`*P>4Ks@!+b{oF73}S8%v=%^X|&?p1y_1 z$sKlfb_1$6RFmEwj3flpIkdZ85wPoh?6psc(L{7Oxz^5OZl*rawi{GBFOU0>;R?U z=ABlc6t6e2Q-V{a0QSe?I#62eNbgd>skZV zPj;UJl+VGY!Qo-O_nyHW#L1?f^7yxq2S5uvj$5$ViY!R^>M%=9_UpJvNw<($6yd+V6^z4IPo z2R~VD+IeF>_9`l45NG8m%3qxvKM{7Wpun+UCt7C5HbKOBiIHED*CEIDwds>)a}@8>G$`N8N&QH`*JIf^=5|Zs;ZS9iaeGJU7WNRg)J1q$)&cqPNWC;^bxaix|(1^9ocv? zKwCp#g1Up#-;&tGpZUAU+u4ym!RIOfccXUX_V<=KFCJ^g$P)^GS;)vqqLE&H*PkJ9 z6Cmq1FKAI#hU;nGgP`qiZyv00cgcIdX-L?d%CI%J37ai2i=i_4P+mh+@*L|ZLXdO1 z`$9h)kMw`RC3op^7u?v;W@y(=c=cGAQ#tcWRZV@a3B(Ky1_KS;cmqk0^jsnAJ_Q`I3x=j59M~d&Pk5 zp8DN~SFh8vwOglHZYDuT7xWDx9*j*zZ=omYh};OCN96~G=#<5e zDGyc)d-M|}@3Nh!5*)4OH(5z`6UxbJW%C=2W9bSHTDe$@`uLYoM@g~41IKhE`?iUh z1Nq%wXCt5<0%|0cRUDJ!9)wPjSI^Z2bMu~F&LP0Bc?2RuGb>J~XwnID`PEzb#a zY(5`VAQ%RGncb5^{gQrb&Zjs2!uVB1(WtHP?;RD%35ss;w!Ct_R%sUQ@V41OgOL8L z7gD;gR>g1TYf+n)7K_Iic zXVh75Y1-u|9c*T#T*;_vxGCtv;~Z{9g&Xs=<;E`(LA)7AF$M0T-;rMhtZe2$lF!N2 z^le2Tv|s0?UX^Ft0CWy_ag3oWHQzlT3A)tPwNZ?0tM}e?EQgjGS-4ZDx;-_1sxr34 zw3aiOJK%)=ko?KYX9)FBC&@ZTG{eqT3aDp!*Voo8j1YN9<-m8Q|Le%%&@;IVYw^?e z8_PM4`^y#lJ`XJyP-dQQoZSYgVlRi?@k*?nj7!qmQbuR8EnR$}j-=e=6?GcvF&7po zuL_`|7mKqzIkf1zbh1({HPyPpeak+f;<0ZDFB;pixq=?3{j2>@wH6MPVrl>sE&2fHDd*1KH{GJ*>uX+@MW-$+hpowh-BX#b` zv&^b)wA?Tfd8Cg>yu;lxH68q^w3vq#h`GMre4reMwd8>61XH?{LUNJlxD@#cdO0ku z^ZBG?=J{HT<6>jF|7FKmywo=w)J0Rr!h+CVhnYb|m&0KWQ8QGN65_WI75PbWSvOTa zFfBZ~ADoYfn@2zS1$}i-bn2S4$x8`bhICNv-TlX zX(r-I^zr&u^JRC$EjIz0XJ5SZ6X+mAmPzbrxUTdw$#&$dk;>(n!Md0`Ab`@ZCNubs zPxg1JcZRZ*P9Z9x5gF$_4D7+}9LxIDSDJdh!N+zW1pyD07-cg9OR4PBZ&-zs*l1y$?Kh$l zxstqq6ph~dJ+oKJk1Ax9sqVIGrNbCibQ@KUV&oU=YtJ?}991r5f7CB#4lGHrB3yt@ zQ#*cLzL;9-P@SB+5e3bY`w_Cmp&WQBz6W+w~E;0oCuX~Me%cNQ#RIB$O8zhJB${W1E^`7M*83T~PC%*jiiv+VA`AWVty^zDx+vP{xdnEd33<-luK&8>F= zH&}Al{q(Ae-WbbgIX7ME_WWekqv|@_7yD|UJ9TlspiH3Wj|sp3dG?C><=VK$@!5T~ z!h8emb?`R4(^4Kaq^gB0_Vl9hN5;YlksuK5&zvT^5v z2fjn(8RjIm(Br#E%*M{MK%hkH+@4{nyK#G8Slcs%jVMf+M#%WNY*Nk{qdpnZ62{k& zZ~ekMvFsZO4?Z;xB=Wj`?y^<ab@eT=$x+OX5~-#iDy=MqrOy2uN-6gF1#k4O-<;# z_ER({!g6gavhfa!>Y8R~LQ{|-nmOc^*WCBQ=TzfJXXB#3=gIC53f|rEo$qEcAdHfN zpxgY{XJ>zTm}#iStnU6y-q?7+As7j*IJpGx%S!wtE=uGefY5L3&3YHkF zCUpCxK-IN%wUn~P;6ntCFdKOT z{$Pb98L;(8(ex{)fq?Sh_Nhn+$Dc=0{j`E4WmS`kKFT0gZjcSfv_JX0p|Ws zsLCr6(lvENhm zs~v~&geebx4qR37(MF4gln^e!T;ohDLl0Gjex>J z+(>@WrzJt3HfrV2h47S~!A}onBKI`r=$+;=LtGuShKz!R;PzQW5=|=-2qh4TftSn% zw*Xs40=qE(qlv@D+?V>7n4Ua3ilGlp_g&j}@t%dyvJ-dLK8v#GU`fKrgXkxt^-0TJ z3QNq7IOcm%edMB7IIV6JdtHg+a6zj>dzqKc+d39On?%7zQn@i1BVA$0s}Z0)1r*qr z{pIfpTR-_=&o36+a=IP)xoqg;&#Iv5os0Kq7OwzlfkDRyEWkO&e^JCmK+Wm&_ouMZ zWKxswDg;Tyr_NpQ_SWZXSKcaor2f`j5u+0?_Rdc>4>K znOF9GmM7){&QDcL?U~N(x^O%bIhuz%#|!eU86sU(bqPPPuo33=OLQ~JpZuDXD#=Lh zV8*Pd@oBH6<@bqz5vQ+=gDF+pTTi*lu@UP;bCfC<5N@TSwi|}|Ypnh%g zj-GrPRzg}1McKSZs#dChIz4y(y6K}U4dz6{7?D!-t9_&O4)SuyhK#G;-uoR|%>`P1 z=rt`<*o&7jmyOMB4sp;5`<$Fe&iByoONp~aRP3as&Tfd$C1UrFTYF4`gj;&8&DWqB zfZG$rqOY_l_O$+wf|&jv_I@(Srua#yCEnd-kdS3_L&8n@2P;1Z>tYLeXu;eT;h~Pwdz&(nx&4PFs2H`zT_xtp>0YP(G0LhzNZ#aSY zE{|s?K(TxNegx9q&v33CvP_#lCTY8&9x^VrGP2->K9h#+rM|Ee)TQ`D6fD3c3-a zC+4AgvpE8-Y)j?t2zut{cDDFhCUyfrEz@eEF&cSZjS*emG0+2Q!OPx6b;lwnB_Y=h z8MDkRZJ51h(z~6>yO^#72Oh?Q%%c#8z_uyUXIFlb{A^#!qBdlYMoZ*JQiO*Wso&n) zi!3*;SohE;fNW?Lf{dSMpOmmBG`G6(nEibBLHz#o*uPZPWq{Yjawu;UMgCStx$QC< zu7W_ztq(1G;=kzNw436!adO=l*W@g6Gr4N`;Q7~D&TJ~}hW7K1+C{TB z?X=Vn7Y4x!>~56w6R!qdgUx!}efzoCG*mDRxTmWZOk~XfycupvLv(5Nkczl+7I0^U zy|OA#i?BWd{Ee4K{>G(7oy0+xB?}NQZk~2Rl#Lt?_|?LWhw_#Np-pmh4~dp66BZaPfNUWz-?5A!|l%M}AOF z!SabuShQJEP7wQt5_4tY4BE~)9+eI6aRxoCkfG! z`|tYuG`&SbE^VGFwCE18WzRBh-g-^cxpu5EzL^@ttiFxV1v~*^=cR$Rl-K_)h+z1IupozE?5?1*2ViW}8{M?YxakV-ng9ewNeFRxD< zembGFwO(nnDgn1&7-JVbU5Z}MIO|sxSz5Sf)qZCXfUM>4=?Np4hq`Y>-5_0epSC!j zcOY)3@LPLE3v)l@)augq+1o;Zem>Y#-cn$=3Md1^fcIX_%}WM5*F}EyMMbU$F3#~L zn79RcD(Wt#iJE@8e5$r#T|#lM#M8=RqYzW(vibD9z@2A`DA*jT7B(0+&)z&a?SpQI zOaF45`6QENtey1n(&h)y#W!57Ra;uOX_daZAN$&>4)Os~lI@(!m0y^k{k60!wBXcY zowGNgk=Z`JLNSm@N{+&F)i{^^Rs$mAckL-}4gruKwk{547|0tKz>G>nvx-ek*n865)d)XQyuT=iLi|%VqrqQmfr^8I))s#|~r+#(6 zgJ_9I@W&50;`=uCy#&;<>gL;8!s~bav&&2k&aty|-jnjm#MrrzVb@enjca>PeqMAu zaXV|%#KLCh#s0@#-XA{{-2s4V_=&<%QRXCH*PT%_C=@z7nU4Wt1t)y}81aC7fPCCt2q@)fZ*RYWAF>7h zws~^=usZmOp!HOZmbfWnQ$IwK35co%ANGB?v2Dq{Q%KUr#<0*F638zkeUdZzl?*KJ z*W7U}DB3EMWdZgE1K<7y-E!Z_{@1q_%Hd0~BkAy58QT>hc@m6zTIst|&1+Jommw?$K7;$n7z^b5@6 z#e^q3D7{cPb(-{_8fPb)f>#+^w|5NQqHE^ASesl4VTnr&iby=$t_8h+m(5;D*O2;S zY&< z4c{4(=Bk!VSjSIw3=nfgEz!^K-(^g%G4*$z#F3_HoIPx`P@J)YPPtl3tZiP)GKw*I zqxRcVA2gqL!rkr2cBNH8LXX6~zJNADCZRGyFA^_6++CVr?9D096A$vaBQ>fm(;?dN z6tziEI*<$huX4{KfiXjaaYdrlw$(V-Srl`eBdw6ZS3CXMhLO`{Uj|yG>TV+_P8szQ zz`RA-kFB{V-Ol;w;Q;Da?xN2zPx@lpr4zw zpEeofSX-TC)7_cmv1H-$C51IQ*kr|c$))-7&~n=~Pz$~dp<)mm8}`0Bm4`n*{%-WL zn6ZvS$`Jg<$&C<^F(AmdLDLD`+0~UI=H>ucvzBm{)RdHp`F(R+e$qk)VQf5jZccro zocKa zmQYghWT#%SQj(aDksgXWXKWG2Sou~oxx`sO#Th3EDMZQ_a$=I<9vUlwe~E!K^iQgq zg+F+)Gb&Et1U;Rz#-$?*oLekhJn)n5tre$gL2OgmZ)?)STz-#gJTxcM-QE4U!poO0 zM;%K?$`%pqV7RdNAtfq1y|<^>s3nh9I{vvr?ONlx@EEAzs)RMh2d8hGlu$LK$7Jul zS0LsuC@Svub#TwQW=M|7O&p*#Eo0Qa!JO;fJ1*p)3mdB%p457&FJl?{A&JaA+Xu&1 zM>{|)(ueTUxz!Ttsa`+%7Qq1`^5eDGp?(AOL3d6!>T=;@XLbi$1+Zf=?U_4AYZXvI zbNn@#r?%6eEZ)0msOh)$Cjcgh(3LVF<<@43O2;v=Tp}L;3qGJ zG$$tmyMFB_b>!_F<=1$*ilu~al6J;zar7G)T&?pXz4x3#Y5a`XE9aksPyF>Goqvb- za5ZCbaq&SUI85n{wE1FC!u9IxJW$$fzsgXHNUSe>LC9c`l9Q$IZr_aOUl-b*VUvfZo3dI(_S!yCYY>LvD8C6L5nR_R8B=r;?$& z1%F?}#&EWB{%Nk1qXmAM4&}2=K!uZfye8bqqm{j-GuJ)NzM<0uGmWje;=&Zp9vEH8 zFC5?hamHmJcG$(kl=1|yFMR5m5!lOPer%D%lDu?4MOYuFB?|~_ZB`~wISN9_W0Kp5 zdNG!IQv1*1`T6;{#rilM@JTeXDQP<`Yf69}exdy1aJ@jHY?I7KnVF_5%$?u9eH$yc ztlynEcd+b#q+);%Op5F^HsQKPn{-M8S(ofr%6}BU%m1ZO5!f>M&f36WNmh5t9k(Fa zZPJa*ko2ta%-EmhOlXRR;MWgx=!qpZ0`uPc4j-dZzpY`>S_XbMM@Xt$eO2)ewIlxL zuT3=9DJ17U>-2Jgj6RZM29Y}>_b~N5EU=vp z+Ese#?V)-yu6XzcnCUR>pfwh{VI-JzBiFKI;3FYE`xGnsDoaUf9Xt)oem}e0V9okb z@h2iWw$MdGCPj8{(i{1JO7W5|IMiUp&Vx$}nqv7j9yT;ue*JS>58d;b3bP9T%;cDp3Ny&?y41J z4(>s)*nHN0Vi30of4duFd(Ifd%h}A;^((@>Gwj{&yY1<#xrhtp>iIbVTHN~hf`SQ` z2JK6->_It|m3u9cq+*V{9_m+*78=hTM3ZN)inzG=Ii4IH@}xxSLMnMh`e41eV6VIR z!>(ieAyiCaau3&ut9LJ#PylPiZnSl*^mN65izQNP6!rJri_2wCHFb((xG}qRj>(;% z=FN8=kpKar;dYZkcXt0B=QgxymmS{sy5NI~g*=PRNysYlUUyly($XkFC{E@XchJ*b ztSRr5?1myctWR&kYp8k=>oDJy47I)Qa)OuhQHjEqs)_S(W|Nf0papvn99}h{rlxv1 zu3o*W?4hpifSujS%wu{3V!j$qT!%Xc8kIZ0Xed*8MEZ@a{PGaIFvb-Q7aE#-~3|lhW zT##1%5HQA(yI4_>Ia;r#8DdcStW&rq&8D08y6K{hs>jS427)=?KH(++6&Kx>T8XPF zh~F3wjs7(;rNe++iDTRdaU@&7UT(?FpUz>M42;oWpVIi-R>Hry=h%9v`7ug^!8BHd zJld#Lh2@o)`-yflxrLQE#HWW(WlW%$%mOY8YOR2{eG;MGXMbzaKPB<Y7`I&L%Bw1(%F7NC zThqpjhW%i0I-}{7i~G{Tk3>9VppZi%2MqC3P*)WhR2g;dbO-Yo)R@N0UMvoc$l>?D zW}vE}nk>r6Y2jryH)NB_o8!kzI#_J`j4fO3Ixvoi|75-jc{ng2xi006z=9vwZhzD6 zt2*^{TCcb>#9qZf?=8c@sRY?bS=T{zAz%^QSheQ3&?czVhI*Qd7*bVh_iJ`iQ&2FH zJ~(Ybop9#N8Sl0CEIdV-r~W%Uf$kp6;O{tJFXC*J7 zqZ#)KxX8X$*%wXyeHAw4vUKD3VyRA+Fz52~w=J&=-7+nJ4G-Wd-5eo$pe&6v_>4UqXLwg_JF;nN%274>0m1% zqH5eQ@bRAX4`F2R=_KfbNOcA`3of@+Rl}{0p>|nSJ!F~9i+CC}EtRyZapLqrZtAC^ zo?oW9aDnfij+K^{vO`iP>V3%TzgiFo1g_GXub$A4EcABqDI${3h~f>ReZbx&)*I1b zftE~k8sqE*HpyQrwx?cI`+%7yuLXkWZwGQwOY(}C>`V?}{i>=092YyQx^_DHEfZ-a zi@-l>$W9zPKsmgglrg0-xmyhhS96;im$W}y<0pq^?AnP_hGCei)}uR)__+ej?3XDI zOX4_lqAd4lVyvFk)Fm~hPm6g zZ`fI?@^NUU2?{!Q>JKKwngqwK9Dsl-Qu?`0&lJ8JS>#`@Pn$?iaH|I0we3}JFxkXc zDBz7>4pcRZX-{q!?`xid$&ob}u=xv8DMyy}Z~XFMQzj+#&}n#gwsUFvUd;Xjd$;KA zkwbiUYI_GV0l5_pj!Mn?!sh}KN`QbN9&u6K)f(Sd_-CI&q0tuCS0l{(AA4Avsc{Zp zWm}b!pYxt#!0^C0Q`4f1Mj-bL{30q(D>$%EnoY9R=8in0p7E0Y-ypxe8KOY9vgBLb z<*-$c{ieFd1pAfv&ei%cJM6sW0U2j|VTFVyuaGu1L`hh)B(iJwCMGGVvj#@3z_SqS zCB^)^GrbH4S4o84l@8T0Bh$Ht4yO$PUY6*7X!H(sPaxbENCX1_@mBtVX4WxEIq%SZ zdqZI~x=+q~u|6?(IeRT`VMJ9z27G(DO z5p@7RrSR%bX=&(>v33tB1mn^yT%V!5PU>`Gk*+iXVmBCRX>eBPl-5u+@ zt!uIq>{*@~GVfS{=?8i$T?C3v6jt~S8}YMM=-0npc>JE3YBXo}tkA)EWuK&7h%L;z zvgY2`EHudEE<;)2Ws&&5W~uXeADNgKx_ot&R_2Iu*}E?oHBqY6Hm&XMp@Ys~lgQ2Z z_IH~`;9O^e?UdOBA3ql9>%VA?V_df6ww{2^+dSpHxGcOmm^>}0!_8`$HzZP)##2Jt z=AV7kD5#U0&h-r&6^nCdn4V5?ccu}T-FR&Z208AJr*9wRO@EZ33sfc#D*rs1S73V9 znI=UuXV?VB`c<`=kv>Gr<$`;b?*!9xvH4)CrDrc|jRMhnYSPP?Yvqlt$soRXD@jSy zK^0Tb*#yC4P`rqSfBGXllK(&6h!JI*qZd~vXH|90=}DQYes3sl`nDs#TyMc!{5%85 z!v2COk^r9GNZFcp9Jg#ox92T;)cw=-8PQJUGe&tvf>&i>aalg(Otj|byF=#5LRAxb zdWOj{ziq>#+=E2ERb4t2vz(e|dpk;V9WkJEWS5nmUb&uC?yw-Hww}xJe{0IFF_E8g)W3n8aJMk- zU~aemd<2kXA8x8UtyYMQ4%qta$Bs0TB8%5!1}DoLS|EY`)YM0Q z0w4h=JCOb}suxc_1wiJ1ikGy+>=linix-bShlPSqoH)Ye|D)vn_hRucx1(%s;9`W? zKri_CTlxRtP68rickHqKfB(dPt22Tq9G7}NwphY+oCV$6o9nh|22D&%G9!DchU>%VpsvRMjM(Lj@2p4x zY=R&&i?YW4DYxQoFZp}J6{X*oL_T|-`S+cq`w8=9Z)J|0nE!2kP0g#$u|55%e5`<; zT7pmPyYM z*6%j+>wE9bPWs`yNi&5N*5gCwm-=UThrCbv;bS%Q-41Z5=3Y{#5GH^XL&8u}@Nhb` zD-l*PWME$(k}TqkZN0Sa=u_H5+{Qer*%`AWzrNH@b>U`Fs#F@C%va&A=3WT_fhXV- zJs;o?fD`wD-Q8WYRIkSmA3EX2%5(kjqb$T|SBSXvrGAY9-Qs_q;tO*lIZ%E+3o_wY z_vvr0M%Q`}n#Mzj{OEIIj{HvE`-_MfYqg90Mn*EA_M{%hkWiqzSm`1+v%mHPyi^NFEzcxr$k=vzlo)I z%k~`H@E7(9g%pbe^$WlrQ|trsc@lJ*qQ@V&5m+#9C9qdQq`)UAwr(R{0pN+^GcD*e zD=^v=UVv=9gP){Wc=mr^@qfqS|KIC^1bS5GO3Cqj2LelgQi&YNPm?5Kpt>tv_xbG- zpDHw5qzBm91*G(fL-GIoGZ>AmsHnKAAjXU`1FfJ8u3SApBw-wG#swWe4rD~EXQ|l& z_M^hgZN#>ogJ%aKR391=^6>HFAXY&gWh7-XAd+uNdf@Go0EzrgaHApFX;UAcuJWf< z#!o=oJ#m+h-(7tZ%faRR834i*FR#WxX=^{-IesY&)Ov}yB*hMBghU<=#0USYvH!e` zF8l8*4-p?Gq)qCH=|v-wlZQJ!!M%T90pdcGRfCA-{(nD~xQ1WK%rkoT*boJJjM#>ZTP)AQ%JzO=c;AvCsp7!J9FEp8rJ$fFdc_H1 zt5auqPC?NMdG_qt&XtX~(~=hmv%vVgoyG2NFaPI1AK>lW*qFp4t%*Jhiq&Z4d<1BH zia0t4uEGeYg)cA>JnUFi{o9Cv54PZKRBU|gW0sqth=D;Vn6=huVplNIG5+m{?#uX_ zL&xrNxE24&v!bj(2&yUw-`7UMWqXNdW|Q7!6u6Yj6uFk{Vg>af<=lV|he zG(Ml&6hHCSdab`P( z!DU-x42Nf`a*dL@wgwnRZE-`h-?EJj=*qx*P8Bg)j=8uCn<-TCV6(iWI4DE41$u%8 z5%RjUKt!8Wld_dfJ8?KBuA;TDFGUffYoOy+W(+tKGh(U5HQYv$dP5SK^&?xv%Q_b2 z27dF80!*|IX4-mdL^0z_o45_E>W<#&Ba`js2Unrfa?JVFI4Lybm!x*_ypx)m6-d;* zsKL!LJba>f#ek)tq~L6jntbE-fe(3B!%&|ieQH&l^Jl`2j)r*Vy%#d>L!yio;2<0e zbNR=jfGmzsYZ6N_)9br@bFD8mtU$zBjhS3hMajt3Z7k`>Qh|bD$Ux^LQCsm!;l$mz zNbUok)%Foc{Dk3;;Fm01d$?uWz4E*iE3(!AIFQvVRm3-WG|myZQKK; zp_b!nhZzH$jqO5ov>-yLFh|yHm{5Qh6&$X@KiBn}Xf9aNwD7viXPqkxIoqv{Ew#*V z;AORUd%)dNV9K|;q18Kky&<{lro0z{Z|8Ay1-#nB#!}j7wHa4jmbk&hWg>F0OY!RN z@o<=d*?!>blvzSQYS^gL{Onk@rp_4Cj z{c@i#aa*SEM0qW&yfpb3LLV3SEEW3~EMI^AQCGOk#-QCq+rOy1)K%a(Hrd_vp_P|i^aefy*HcuU3z2s6ghnYvgIO=UR zy4LeAQGDb1FM)5C!Jiiu;tBM$=jW;1Y*t*3>R)SZElT{Q*DQ#e=<+f%Ha@ZJP8G>i zTwvBzczxo@AX{Nf`NTBap3~eMe0vZrZ*VjK->ap&o#vDr!U&^f_8$h4Q3S<2pu(d= z7%j!z?Z4Fp7i~7gv^ATS;_Y-RvgRom87S6)Jh8Vf-y774sGmE3p5hkG9}N}h56Ubs zH_>OHq<9N&=Lhsx>vup=-Qqr;$ppX_Q0zX-(_AO3bUKJeGJkmo{6Qfn4Srtm^p)@b E0$_xkJLpn&_kB=!_r;qLL{a+G0f<5o{@Lweb0CPXMO8@=d5oXYhjpq?sDB%{awF1=!upx%|(`rAP|T~Rprq$ z5a^Es;2UxN58yvGjUgkzuTyT%lplcdd#)`5f1I|uuX!H?Dhj7QG&uwOeZg5p-wgz! zZK8aiYIFK(4g$F-sy@2^0&cWE=?%TM5Rdcb%m#ndKS(09DI9nZr?6}2aWYc=K5Q(0 z%+5lv_(2cXz2d0Xg45>l5vSX^5+gd_T_1}vKOZsQmDFKw>Dq9`=Py->8}HuP{Vh6L zY(>=|aivM)eEFA+7>BNwktC9DN>nY9q?i~O<&oX1_Zhexx0Ek?-U61CB%{~RU8C*4ek5JS$YYb}yOFUHs~wkDy-0a#W+6G>{ZfT6$}_r{@37<5#`oQt z!v{FOJq_rYGD1kNQO>HU!qLxVX+xb0B~yxf9?&NGkiUlLDiWrEAqSD3i}8r9`eUca zpJte_+X_e919+~>{lIWc#Wq=$xVE-wKP+T5qq_dc`F;M6>@7H%Ail$fQY^@o@qC9c*7diM6@3*fxIdX3_WZ zgD9s;F|k?cgm)I4++=8&2KjLRJvY@YHl)qc@Ii^wQP3(+g)^2WGvO2&vu}@O6Hby;zE~T*&IST~VhBL0lRL=IG$%wUM-`;Ev9VDjw%q(q+D{TXjmMyINpfbiE7Z)> zsd^s6hj^5+Xm@WCbR=Uf8c9Ofk+T^rALJj8^6Ok!rz%H(>)`gQ{%E~JKWzvnr(!;J_A z7KGGhp3>}7MX)hy->SS4snjtnytHfCfv?l>wx||V73N7gG}k0Fwod&O%Y*5x+sdOz zd;T43(AKa{5;0_>OC1VlL)Fg=!-?DErS5M<=xYMcx?daDq>H&t_PPhu=Q~&VI33{D zx+IS9lNJSmr$DbOHm8!;(WuUayxR}MDJt&bL6(#)nT?#7V;j`u%Q4Qt-s1W?Iw0hm zZ~FH2#Q3u!-^dikKQeV;syKhgOLz;13@(3-zoazswl)oOR!Zd0w%DHaA#SU~1oq8p zKP`}$v|@4VYs(D8FlTSo&|CvR7ESd!(tez7(i8*wBtIAFuoc#Pu8zQV;8a%QzdshZ zzakcL^!zfNaqM!1TY;y&6V-~VUJGBj@K(v&-4-hc8PCrJdtwr>mRR?A4I#}lMs>Mj zQldK{t0nG`z9@~3CcBqhFg9i<$VH}X$M2TfJK`M+g~3#}1`>nhc@TmL1Be4U&^^9p zvW0GRsxqLt21{KXFyk7tr%@C7=)uz6MDO(lZsB`zO!c+t)kXTOan4ZN0tKTQFCFiZ zWa5k;UgEyfIY-ERqu=pU?|MP>CM$Ls<&d3m&&W98k(r&iM$ zN8&T@9>6tm!RlNCa4MB6NPQ<|+zLrD(bmi|+VDQVqnSOG`dPyXx^m-0&mJzC&pu9y z2v%bcTs9CAnQ_X=^mgDF0S;E?xEXIPV zXvcT`HLl#-n`&&$fKY*6KU$2i*$P$Ij7y8pp!;Y&{Feb0;2N3#zq`hJRsUBEV(@BY z3F-b2_KmH^x6TiF+)X4+dE?f`N@T7Bj{PddNi$t}S#Q$oM0a?kUeMFmn^k|9x9V64 z){T^MIP1K-Im^JSwe%Wr`j(F~wqq$_~rRWjAdh(DYk!`mv*628pnN)w=ST};4J{TtmvmK@^ zVo?RhM{9mvYN~P|&}ZF~5gVJIOL^2d&*vG=E{!(NCz|a|v;8<~Vx22EnwzC6u-h2( zo`DJ1ZiUzT?r|Whr@y2i;4Uc_?v?D{zyktdISDh@DKDXv=)iQIp%+{40qf}1+u?P^ zYSJJSV4afxF&`J+hjcD++Lu&InvxZrOku6}!73UT&8FmCJ7(sWJPgrcJ+{EDlXGxH zgzqF9d2s-Ch}K3B$cJ6Yf-`d+%ZhjcXgUPhB|IyuG`_L-&`kePj}M=odbaeKLXCM z>|PvP3n^#wpcfk7>~<7e7k}s$a_p1YMWK2(#BFTinhB1DGtl_xk8oh3Jc{{H$9=~y5$nktbP|C<*h$#5*p0`2KO$pV z1sHnGdJnbf=|G^b7f!T|LCSB3H4#4LPJU@u<#@Q2j5|%e(vg}RtwpPOl^^B*P{Pb?b)M1a*0IWV(j7(a7UkR}Q~ zMay)TVe9#u(#vjf@V9dGIiCISg^i8zsVX*>ri#{F2!lx-`MM9JeC>Y`gqKXri zZYRG4R`kTqYmnK1x|yN3bT_wD0sEsRh@xz6i)J&x`iewLGwPoH~ zJ9Zhd*dQ#Om3B%YKad73p3Q;=-{~=6oUFKBYnZ{!dF!wFOUZd+%!7Hy@yh~L_9Buu@JZ6XH+lCR^|6vGPk4B1l|5M7co^q^Z>T`Cs zAoMgJ$uw}T=qua}TnW$A*xO=4OOZyH_->V+q*9n^bz8s%h2uP+6fx|YC=&f#c25qk z5t0JWba!q4>WjJ18xVJWCizHeGnu>}AK07JC-)+@Qp@TLIW1>Btaj0*B`Ni4M*e|N zZLYFYB&`8p+sQCBf{Opxhh`7U=i2bw0@oNoAZF=U=pQGF`QBTn^AU1@_bq|LYpl(- zYjCX4d2yQ@;n^VY9OeB8=awHQ*0Wao@S$2d_-;-5ORzG%wzF@yIE>dsZNpGOmJoTG z9F|-01RW4d?=)~0G-GNO9&#h^3?>NsM_rD^7=dHfx8+nVXXbWrgoP7G;RfnhS3^!h z-Lp3TisvzrmULYjA1BT@G8Y_)$Q7T9JUzg-)w_8LR1vq__taYOPi?sYS3k(m#if)3 z{;gyAD8s)l!o}XcfBS5^Xgaq;JHxF^5698M3_OoNE5;fmdA<`z2YMZnbm9f&@P_Ra zkN3Sr{luRk;X<2~Om60822dvbYjC3>AlxzEpg5p6EIjP_wm^32`GxZSlP2KQxYz+Z zet6L3JpcxuODJgfxZM#()aI_(EW^3 zjsiR~#)mS`e!eSgm#RuBbObVz7@SWkUT!E|= z(YE!mLilW2>X?1g`|#iE>nP9v>a;xVx3oDrIvVyStaa+nDf2G{w@c=cl60X9R#A)> zWzUV5@cZkmjs2YLBilRfv*}7Naz*Xoi}3mm|J_g;Ue@6HPVRsX!Om55XHrwq4YSFf z9DgP0sJ#QPVu)*)#TS&zSgn{Ehfdhlj^E;p=~AcT%q>>;KW|!a+#a2-1KtAb8IO+^ ze$KzaYB~YF$L}L3Gv|@NYhEnDbJxOa<7$+h2B&X#GL`F?^+52( zEMzVax9-CHaY9K@OcL$Zo9Izq`;`mTGU_*e7AXyt()(Meu9{0jV-W|Qs<5^8RZcYQ z;~N1-*r;VHiJM9APcjh?*Iwym=DX*ubFFo|7u!cA*JkrZL9VJ=-hTX#7L=JUe&?8C zD5(Q)tW1gxK4pF!ykBLJNO&*UGHQZd8M_LL<|}CoID_u}?zUmB-iYDWPb;kCP3#t! zT+-_Pw4UdR$u{k(J|}CiBXI-mBD(aBK~M&L>1&Ii;I)C&$cOc&cp%Jvx{Idu}WhJBT=zveCtlZG}Q2Ugpf|YmtGZg>#ZEseHuypHX zWnGKa@rg6pPu$HUqGwE_*QI82bbqRLK=&j6QF_66>Ctn{{>AG@Xu3`d= z=Gq1oG2gbbk}b5`BOhWeS8(*{?k$MiNA9#xv)W3;05_Weu9En1xL@koLL8w|b6gc$ zbkQ=%iQQ@)f3X| zAI)*?Y6+ODJ}bN8wb2`|!H_@B;jftN_uI6q{|?=jkSM*>b=-R)gX*_1gk)Okd!w@J ziO7cxcsEUE-ro)Y0?n)__2|3#&no^;TKRwNJOsy7rZcuQFFhWau@<1mu6BB1wegnH8ChHIc{!6$OW+NlP5obm5b06cI2g?0okD?R1rbnWdzjfQN zC$(87!n+RK=ZZs}#y`oGn;rcu@921^r-66Zd4HSk%D_su)VXsXBkMA|K6+2d-IYlG z>31XJ@Kp+P+uHh&zC-&Z7pDaG@^ZU{n_^Ox^54YQdcQ=U<$yI!$EXNL22KgHWn=uc-q%-m8SR1C{Bpuw(m>B zGJQySn~$M{o5v;S-5+~Ks2Gbxd+{~taVksG@}R83F*%OD5a~Vv10M)?%ZvKb448>o z)7z?mZyaWtQ#&Dx3nS%zB>`)goG7Zo`n8!?q{gW{qXG#tCj#fei(2Ux{W}E}!Tm=w zx__>ZF{vvEj=HL<4_K|4`8&)O^si=B=jKY6KW(|sWv>c7%nSt!><6Wd7TY-=6<5uS z4CKGETOKIQs~BF9MRk44PSGD|U+w$WY5Ya%=ey)5jv_5#>K-wkH3qVH%XlqaC;qq& zTW@uEnYXOSeC?bP^WEt8-Nj)TwGi;?uuc^Ned}V#w&}=~n)7BU@(`SnaSR{gjv}y4meZ1S`6zJU6>i z+J~(Ep}hg@361eQuwVJ)-DdA9Uh8nD;3oK1>!?a!t(t!X+v!z!FW!Q%xbq2e_1b{0 zMeLL;5+$7X8HMS#TksOY1j$MM^(}2XP1m%ye96}!V)9wBk}3!5nx&Mbhn|h%+}s6L zZYq(R)gv!3b986_+V=ePK3V1=xsphS@NWjAu;5Xx zTas6<=FDn?7xR>4uj&u=^$*WZfr*!3W#|DII%h*LNoC?qD%?B%3R}!-Gf{qMTVx^E zAfcs=DY*V@S8yY6P~+y?kui!lvF}oU2S+ zVQg-<({bAS?u`NU)a_LH%?e8ocL|*iTx7NoiteLV81xqPs|3qr_$89YD9V8Jh)da= z^r^*aoqfgjmi*(`n&1bK%&$3$A%~hTZARaq>^nsB$kME-wNs7nAgQS0AUT(=A|%9v zq#)S-%t*aj2_H^Fyf>!+vsz&;Jq>_?Op{+@x_#Quaso>;JY=|c@YLHcm9c!bAi@e)%z zKdA56-`BKzGfs`%_VlA#Faj-j3vHp9J!qj&y6`Ys7;Fh#r#MoVjP84}Z2Gzh|&U^k&ViC&-;|x;0`Vt@}hmrZ7bB(WCT)mUijISD=+GXph zOIj-IT}%7J0SnKr=||_;@z?gx?=NlGm%v04mcyd?V^K6~rIVWJs8{d~S&_?*?-l#* zYhgwZvK{9_PO z_C#XvpgS{(mIsJ32Zn!oE(wDTAuY&s`ByxE2rhzkC8}riYj$!UJPPaOn{Sg8bh7^# zTrHztNO~ao*fC@~BxlH=0KqvgiK$HFPD;B zzM5S}`1zvOzOkIQ?g2*jhKmR>CtRVZ(>uTROBqx|XzOmp_qj~jJL`Aklc)G_-=B;M z$VB#5vd*mu23r;<=#@Dzv4U?Mvz#BX9$n|tSIXa_4X5is48PvXIw?aaVOutHQA^lU z_wV*T{l|B!R_6Mztuoe5WiII}$=t<}rm|igY}9XzHMz#rRT%C~)#$4>-BMeVcG(P4 zLdd*afD1{o8#nV!-b%5_hF*I9VLFkPiLDpwZ|aiYQ=04*@?zTadSwa*>VrN~QhNk@ z(D(}IxM3=HUrpS+-nXQJ>JBTsGj0V4Tu_ibxX+aqq z=3Hgv#_LKYU)50nKB^>rUL^g)T> z0h3?%Bo@Cu5uoY4>KG)RyMiUrAw6;V)!mo_mij7TGuaDwBI3aUTVg4SzjEBcr$uH+ z5-@jn37x~_$aeH+*Uq}G*rv*XqYL!f85b1^hrcSP$83zUi;Reku3G5gXjXj!^lE4F zLD5L1R`OAYuj_DIa-rw;l5GAlCjH#bizh#~T9n=BlB0b%vpoFBb5T~>cCK;DqPQWabf4-_%a`Yb?308zH5JRy{+!GaqgUBc=MBNZ%W#7YZ`gSFG5!lLJ zQ#LaKk$u}y!DD5+Z%R1vOo$+};{H^232t&7IK^?B{gp(zWKSG=dJOdw`S4;d>BZz; zt+IB_Zf2g3yRpZj6>|6X-hVeE4*;8$kDrb0-%qZrweojUM6FeCv?$71YZr~SZ>>93 zN8L3(t_`{aOZZ}H5QZi1@|Rmo#yZqRYA^(_;&OCFAih`_mY9Oq;=w-;`Hv$l*mdh{ zsBYzU{xqyfFXR19Smi;j@Zqc#$?jHAEAxP>z(}4|P~%yAP`^^n+Qj5q&2ArTTA@QH zFX8AHGVoNnCCu|!d-2$e_o&)@Bk9UiDQcs$o;((R{lcU)K5c3>>WZ2lxn#f!v0_ku zv^CkTlQ-XN#*|&`CfQgejPoYX;nuykU&#k$G5yDJ8+G)?E?BbEhVM>3tRz*dzW^YC z@u|O~ibA6vs(O@kYh*5{hhy1kHwUVquxkdPN+dztBNlc8O_J=YF2FzZ8y z8suM9b4ZzqKS>#?5&~zTrC$8cn61k{KmOj#f#Sn>rrs z+xC7dkmQsx@_%gd(6H-27Rav1OrU`L5iBh3FV^DPdRzWe2k~yA|C2}mGOJXj7@7Ul z$pKU1-T!|1B`(qrTW(zB=@XYSh#T}eV;QN`q*K-`{or>o&oWw-R+oV|NNqARlRZ0L zGWpQrDf{7I1{;Fi#)EzN}_{2MN^y)OOZa)Eo^_(x&; z)#}nBllzc|y6lcc-4b+y2G)r$Jh?Bq1^=$+#GhzLdrLsA4E9qx(TC64L!}b|aOGio z>C1zHbeJ-0k zldOVKO=_+AWmc3dgN92f#(`f486p4v{U6m3>{*(DTGHthd|;I!>r*zk@u~l)<8g_KtCV%5L7leV5*V7HVd0-zW#nGXO@U^zY6} zm1xVMQBKBXw$T?P`*oUuj+vLYccZ&`{eYw6HkdRQGP(+OP3}5w=lyYouVLk#3kdoWo~6JhoU{VP4 z_rpp@Q*eP_Zld2nBI*UcdS7`zLH6AI!Hh)S68jV+Zo)L7j3!REVWjC4NJ!%ZHdTHQ zq!1TL=QBf9X{fcYdRJ7`1z0u!@Z$@n>D)djI`F)8nuIZb*L|1e473}n>cj^|AvF?< zf{cE8WMpcX48-PnW}V}hC24_IkV?n_7})wh1{U_2rKVFnbbfyTXZM`{YanwgxwEBU zS~&9>VqAE<%hX>@4qt(j^7L@-Yg}B!=;W#BRi8tz#w-P0hvZFP0y&==I5{?YHQ)da z_ebhCR##=+S3W@*T^76I#qEaW_U5CaafZYX`A!Zmg(L?*eETt6mRClj(HTJN9o%}F zVhdIm4B|w9418*i{Hmng-wQQs+9rfPOaVrlt<+=K` z>p`gMT|mjiB_u2#^d^YgvHR`L;_>(>UTrN64Y{p$&JhSKIY>5;j$_#4sYRWlalHe= zULcm5Wi+NT$wwFgKP6x&7k8d{kjKQoe|d)bSP=cw=`5(?HAUfaPes8MV7Sh<@F9he zE=cd+IjR`Zt-ZtN+Vbv%Zb@U87Dm9jkADU#Y_|ye;e&XQBB@GXpl#4b$=rtSamB(% zQi8G8_D}PDmMw(Ag>(f~Y8UgD=UAOw9UMzT6kQJ5@~gJA6&?&$v~f8`Kt;lyrB`($v({$7kYjM1yy-nhNyY@PtK1#e?^m z&&jnfbjD{y^d8yn<~S*MZsXAf>|R{3?RA*Z*!Eto({2M{k8{?dfY+&hKY&AR7LO*| z6Zn;RIK+|-JqK#*yBESYs!6T63W(|B2aXs$9(4zw<@Tr5T@3g0?{pef9!DnC2AAWe z67!EsG`+iL2g7E6(1b5+y*CS|Lu~($Map@ZZ*|b<(Wq6A8`-I60SzAzXfgKWJVk6c zYr>V&lx~o7XTyEF=0gwrU|}3+)N*ThK6$7QHBF0a7=z(xcs^G|KzDRFjs{YB!#Tu) zuqBG)2g7JwjXSh>b7@8y2mi4>mm+^Llay#NqDUN;b&5azyuV+_aoEFrt8a&+a`sp+ zjLml$*=uBz7De+Yj{e_%{d+I>o3=oO{mAf3ipvjrrb1H=+BX?mYB-}CjM=35BxS4P zE+ZR7OB}AV6jO6?BYnAR<8!}zc6*>d)T%hb8;|Urgp*G>!By`4JJuJPC~eG%I!^5FwkGE9Pmqk|wt9+U z{ov`<-I-4cVMN1)$w!9m^_%IeZ!IQjJBc~NKLZlil3Vp4l^c<7tMBQ+p-0M^oG@&$ z&2{NkL4InZy-E%_V|b^Lvbvg__QbIZY;G%>148QTm^+r{Y5onD=bgQ{7j*c=Fh#~= zO^`v5hp-jvHZlEEdgC}it0;8pkv*32re2xEhWxWQfy%y@%q8LB^Sl?^=5hGTvA*hF zFdF~L*==)Z^4HhDlL&0cNA;&tq~Af*qwYGsOYAq4oh%H@c+J@QZup`g{=*XNRfis! zyY{q3h*HzBq+gHPGbe8e0iz1*ua>#zyE4HD{V^p7_q5ka_WE(Qz{`;jk`7@W;+anf z%&P8eTKIm=JCk}U>&8#H>URFHOrLTxL=NJOXNL1nD-G~u(QwCsmz!5 zjeId+f>DR@4fwtvJZ5B^E?wTJm7XMgjX5d!;!~PS94s;|Cbc{zY=>|U>6%x1hh6x zfAGUUgFYXfi0XLU>xmv1bWK&yck^_*+NU4cA2annl!khRrTCcp4#Bfi*s-YAf!$!9 z>7p*1ACLOWH+(%8tSU3gcOee^kXX+vK7;(I-B$&l%y^G2RKQJwTP!b1l!6Y_;uq8d z>8Jm+VH6JNeSb;2Dl|X4lx(ohfUbhs6>`t+ce<|1W{(6~5GrLrHB-30jvO6+N zv!vg&@vBeEm}5Rf{RA;LI=FRbU}s~8k@eoUT869rP-Cv+i1K``(UfQee<%h7b#JjW zkwpj|zby`S^$!_rBDP3F{1>I8(h^w_N-YOMLe+ly5U%u!P{A?pa`(pEryO0Dz3G@7KeYVN>s-&13%416cgz~<@G2x6N!-nnh?5w&L zCfC`$G?l&@PjPdZVFk08F>}nY8ftuI-5cx#kIWl=W1*Y8UfI??Ci=7Q7KsK9S-)c4 z>p>T~$dk5uQQ6264*=$6QXeA(z-vFN?>y;dY9U1n*~cv;1Gszs9oA>5x4@UR9wFbt z$z|ibCp}4i|I%W<>g_3fjr2G->}IaWp-rc`{kplijU~w&I@F;SL56QOnW3ViL$fXr91yLt;1BrQ=+k239Y*)!&zT#?g`Wv4AXjE3S z+34!#hGyYd08;)Tn>)=_0=~U{a6}OOjpJh%>l2^hjnw?JxV+Yj)5ku3eHy53MKP0U zzV5z)I^SBvhij1O1e-Nl#lZJ#Ik8icvpCqcmNIkcC}Ms} z!GrFx)tK7+WFw;Bg3{D$%s|6Cb>m)IA%oF1jNYjFa3ds%M6U0*LpmHk`Rc+wCC7Ez{`vmN0eb!;QHl8 z4cIrs${L4PS?l>fB6(@PnU{8?Uwq-$*P2rCBRyyHQS1jXo2qdO1`_tJtm+i+vB3lG zmUqUF+j7rgUw8Ap4S5V4f3AUv(?VNPjeWbo6*A=ST9%NHx+~gx<2GNfo{%cU6oH1A zg+<9kT`Z+dbi;cE6;Y!1gB8+Oz0+G~(QL)IHJ2D8DWTfpJHtQfoyy9IqS|jMl;rdg zyU0_%ET3k1msLGqc2oy;SEAYzXhXLV%B^E;m-UB-?0tJ=h84>*Go-?ro6J|bcQPqVE3b*<(@>0R(Md~O!zx2>w-Wb`+%d6byh(+Ea1{*oGEWdhy zzM9d=+M*K}f+iKX_p--4ADI24V^!_tL?ZZ(V56E(j75&_n4sE(-px2sWM`=QTr-WT z08f}&n`wn5{@9->vQNu9<)!6IZmb5q4F2(_PHw0v^M&AJXk&X+Tl!?|+EBkK=4)^x zUeyhVBgJ=Q6>?lxb40ihj8o7t3-!P+Z1EDa$4P#?K%^-ueRDB*RxJwkBcf_VRm9F` zCA&@g{Bu&|RBJ%YDev3PT6kNz zdP;?%PTc*etZ)#|nt!+$rTq3o6Uiv!T9DPgiX66|{otGi3wkG|7W8z35hHZjVx=J3 zZr&|GZ|=-J%H($voi;qzlqDxh_o6ws!jv(p()7LCd)QoI>mXLwI)`M#vnp-0ZH7{@ z%)xMRBM>D*a=YzWl8clB^Q)GRk2daVi{j-x584!nMY*B5+r_cfGdnFHDGxR6xw2=QK-}{V!>;5i>}NgHW>?J2ZP=Tu(URN3Jq?*wbyE;A z%3z=4F{2B&|$jO+H2D0UZ(qxbAl#JXUvF5CSOsKjcLcI2?yreEQx zg4!P`@K8l@Nm;7zo+qkvN3lYK$>?r8uT(l=cT-uh#D$D@Vmm2_0)9H2c3$=<`uXslAKRWEuki7(`(9DToO%!~BdV~p|;KAh2FUT9#Mc1Pv>(p6UnFhtp z6RXai^JZQtjYnm`W>;o%Lqd4{x-hvY#tBnD;r>jR4$RH1!1o&1;k$d8g>_^itKnn9 zzOYvHTCsHholAF3O4<|XV}o%4{e4wDpw}xW>aE+ZeL1X_&;$Mmw_og7xY#yT&M4`* zJz9hc<52Wy{xo&xP3CAt7qswCy|NxKCBk^^sMGJHM1^gOTX}D|oH>wOW~Kr1tX7Gg zLDaUB;$2HJQ;rr#597sSJ!VvCha_%|k||~RU)(?ULUPA^f&YWXptUtCyj93%q+j}# zOc6m3N{1ufdG8Rj{L*eb{#2<|wZBCZgV-!|A*P|Zy#1_~y2Hwax(;3iq~MhGDbT<# z&fOv}9spCi?|Lw6y8}FcGllFFB11to}#-(O!f;&3>d?|Ce+}RJQR? zdY{x+Aw9)*Htpu?R~g0Xx4pkPh#lpcKEDLCIbPi?eslbcr+5g3cH-5z60R!OK$-Jb zCk&XgqJC~?Z3bwJcN1NEHX1yHU&lcUClt<`y&HUML+Wn%ANsMUk@BoetJ%>2q_fWb zSF?ciNbw`>n$uXLKaQ*H>0Q!QuiXRo`N*7#p<3-qIDjRIIQ;h3X3ySS;34{Gnh>_U zr1edm9F}|9_mE#c&BT;MW>pXPQkNgmuKlac$@{oGudBVb$2*{!Wqf#yIQ2FP++`pW zf`#~G>OTyW$D5vg6%&2x7XX#cLTQ&$Yq7L|1MKi^%MPDw4H?lf@9?`J2e7|RfpSi6 z(m4bBT`J4Uv~TJUB^tXiyAp}XmU_0hX$2%I^sotG;-<}m{wldU-aat%M|g-LTf9fS z!n0B7pGb$hwNN3jSG)kYKS)2M3pH)1_}1TOsX+(k>O$53dg&BNMjq`3Uj2))KTYTKy7`^!+M zoJ9h#z4VjDCa}FEm{jT?Ae+zs;#*RX_kN1=rnCsI3Een#kLCXkF6V#E^7>z5o@NCE zSsf79Q4_A6fr^K-Eg{Sld`xoMhcKY6C@(FYU2+N(XLh1{Sv*0!DZK??l;h6I5S_yA z49<^KJ=Ydqk8fqAliz+~Y&<<)X2;9JQwnf!-BeHH1wiE!9%zTArY0PKd&i4e^&sW# zWbTs12Y9uTDvpR~C*c0(9V@TL`$CY>39hQM%G5eZw0A-TSn_kYK{IK;j>IwrUhXtq zXFJ5l;HaS(uCTu(K4Mq`$78g8SDx1&E(mLGNV~7RaB^~r?*xPOPFxNYZg1aq&%50F ztHwwC^DzA{4o5FN0qWc4osnP;N$Md_%|A1IY-YTv}W_=pf==>dQJFE<8?i17~tHKn5KBX3A@zUW=K;Nb{ab{M z%ypZaO>`*$mdsqgtE8?T62OK9IwE&>l-WI-OS65jTcdIEZ_EHHafQoRtE8q&+daE# zYMIF9C@J7dZqT`fZUy|mk?}!5LD;>PQgaLHs`B#Ib8_?VxL^UocV>lUcLHyUPcZ<% zE1`8Q4Tjh6mQfg{4y%;hCg-HhkTk~2&S0^BaDb~JXfZf`0KjCVluILkxl)$*A5gby zWJaOeXLF02TAsB{|AqX7=`7?~oLj{&2HtZf=feL*su0 zrvccaqFR4UGM)paSJ~R?R_T(QOS*%mHU_9NAygnCqkl}NtsP6ymfsod25hT^QBT0A zX7?e-{!c(`Exbth&Dc&G;QI0+1x6SDo~?rs<>BSktc#C}yTZXC37Cs2X#+s0^-c~G zXjK6hga{N;;s1Wq@;?dZ@gvP8R!x}q)QO4T@*DaH+tkGr!@MiEFr&d=!i`1ij-kz~^U#pjr3*QR?`_Jx?54yMO&>1yT*HOlF6Vby7r*vw zROeaB?5HJSe;aW>N2iIVIq8?O6Jp?N-kJkjp-${FYjt9)V-2$oV!I68*qO1W+8V$(4a4pfd9HTw`ql1V?rEsj z7S9!N0F+BEW%_iMY-2OAY!dyP_O^?A8Qa5lT=@^3ILnXlu4W(kgMo3@0b6^GN=Oi! z7EF-w9i-(z;~JPok8PGD2eZ5Ha1tMq_EhC4fj4GK@-M_lVM>OVp1Y(Z$x*b8-kaSz zwR)xOhXS-@p@{!?7gr*V!;XUwB65eCSw2amjABBx3n=C}@73jeu=au#Edyj`qha&Q~={&^B(Pl%JBIb)DI z_qY5LZlXH7Z0=EL_gm#!LWdd^Or^IGgYE$J~&vcuOYoi~-AAbcUF_MbVDK4v+R9CnsTx;0Y23=W*tA}3moA-yMt zs@SO5LS18D*T16_dGzuJ+1$#F|R8sde6PkrfCLtF0-Xl+|WRCFvLBip0E6SElw z4X(nCZp71!EsyDm9AjdUMJ+Fs@(l`(y>%06c9CP}}p zuUJjdYd39up$hVpw7ClJVUwW{TgA=0uzZ{Vw^hR_-kF0+4CuvARNL+b=w$lds(RH9 zPM-$5$i#geM3`S`SmyVh>HJoRUM^^P?)V~o6)YAy*+Q4#fj_q5S@U)uwepdx4yUP{GCOXL9Y<5faQ@02H%nG z>2-d(sjlQbhWXnEUz(LS^h~=kxl?8N+su6P!ss+~#O4=eU1o1jE_-{Zrj*rhWVi!j z2NvUR95_~*k_}N+a#wGZOed0tYVSH+4XHJ2&-a(y{AmtTv~F51zwxani4DWyD98{ zG4Wc8PL&L=O_I*B?F;srcv%APttZQ>LBdNXI}AI1P^s{(S!Z`3ZDQh;jER}3(?45d zCp{HGFV!BbjTJT=g9UMu=B}Mv`x;r~B75|Y4-XB8t>l114gD1}pFmD%NN;`=-W`1Fd#k0(GYZ{f-A4LLO?Sj^;eh7b=UydBrl(5u& z-)xo=O3bHFGq=Az-jd*{n^(JReD-~}g`{+yBwy_nIbg$GvkaHNZhvWJ-sUf|ypUU7 zV|*)*O91@rQZzuujMe8{eE*NjHB+F%c3D-1wJuu1cq+2plI01;TaM4#$5@3~%HCX1 zu1wyqa2xCI{GxwSK-`j~UQAzaLU9m0WdX%DPG1zM-rYjl3EQ~u6yCR&YjI3#8eacV zPI8Jxge^**e{m%mIpy?2LSWKbSR<|l>=olKo@k`Gj1-mLV`tUAp;%|*X%_Wj0@Sp# zPjx=4`^NSDsU8n{bRYwxhtg1@@w0C=FK(bzQ(}AEkJPtYM|ZEhRhRP^i&*9=U!^D3 zkRNOvTxk1q`t zyT|i^YfZ5(@JOvj-+l|F*fx3AoECbuCV1bRa#`rBC@!tHnaFZ>vT=+mjap*qGE=ziy>p3{1@}a{9K4 zlo!Buh1h9b(KhdJu000b9LO>E|A_W(DW>SOu%NEd4~>-?pFL5od~TPKGwM9`5r=+_ z%W!Pw&7&5p+a-?DSJUXr`ve7pg)8q#@k==K-x*vI;H;`qpp|i>_fY!2I-zo#CkBchb-=oT1;9}>&Vn(kLui|`&xnlC~5|_30 z()Y`H{pS4+mW5<95@6>+7QfQfJrz0NCZ2?Zz*oEWvwH9e#l>hvJ(k0=XE>3oUF$4{ z^%~@)-1@%-OnRSf=dUp zxT{ufmasU9b@4TJUt5E`bc|}!I_!@rtnCR$(eZItE43&)f=L0!=8NleJxY6zH{YNK#sD8Hj4bSpXjEAx_NIz3)Bd_O7hu zk<(zpD#(sz7>}8SBvYX$NyL*V4zBaeahL&WkPrkmeFov{uAb_ zgKMZt?nDOw;dvnY>Pzo(Fzz5I-vG>N*_8CJ$p6Sij8LQ*1~o0d_dF|p{aC^||H*`s zqd#UH#l0T$#An{~Kps>qsR83g;3bNMoW?Ze8%DTwMs3jwql9CHOIb}pYSpwLTYyXp zWXN607}1)C=|>M%XXpyYovwZq7P!O`SDCjTXt&-~_;MtoW8CeGX1o_Eqlc%VbV*Ml z;PFW3$XQ45kf^g00-U8PP^~%R(v4{|b5i;7!eBeR{XLcX%QDnE5HZ4fjfHkjd;@@`JJ$8*oMfg{m$jTT zZ8@d|H{L|u-RfxUc@wrV+t)X{5oRqRAlBnt)u^joX|IzEy7y1ksx3#k<!G9 z=32*V{c7>7o-Pn3eCC*zFFA=89hy0`Dj^orjxN&@i{@M&&}H`j zG|_g6dqV>guXw}#O{UPn;<2M0mo^E;+8R%u+*!UpLb_r4$TBM&5P(Z|$9V zR8v{I=BctQyF{Q0M3m7InS}r{2@yU;8DtWXNrs3(kQo`n5Ks{)h=_oOnW!izQ~oRkc9Lh@Kt~J-gWOe$c6r$4Qxl5@L3|A5E;E_h-Q(1mH^T52`Jeu7ucfPp4e+RHX zq)dFhTBsKByL{8^_2l=K1>8anO`kmjlS^Q26i=pFT)EY_iyE#Rm-1a&?7Fo-u*#|-dSN? z1(zc{&>f|k`>ic8Lzt)ahD#AY-@dv_5S}bV#52uwQWv(;Uh^D(!QFxQlc|*B_{_KW ze)`{K*Z<=5^G_)BFUV?bKD1)s%yp*#?BoZj?PW?E0{xbfk{8&tIa7iv%+LQi%)`^I z#(ke`GFvlysrU+~x~R3;15z=|5jZA^_Pu=+_B}O8GU_E79k@WK5fTz2@blcp?(SPY z8L)u*h1&7)@twXi-GFY}t#rK4S90Qg0z`%nQJ0&$IhhGr1RRTV|INB<*rBUpK6@uCA_ovZ6w1)@iFwN*4@G zrOKt5PqmXcr1ILedPQo6523ZkPl2bITUinvGf@GUx|J6o_)Lib`&B-{bagCVAXm#% z&_&}`898vC;0GWmQv}3~09V?T9IdodsD{Hl$M>;i}TRiWM?eumBucg~4FV zDS(RZqD%Y!2cPbEE7$4hyh*5j77eQtxjaIV@I|Se22}qlC7H3q!HXwy6g=zamCq5Q z#IpQj2Era<3{6}Q@;v;Jy9xcLjAt7Yc30<0E^H?)+W$(P>-WpD8lm)>4^1A-i=HLo zyEaA7a<%=cZ>y@i@FzIS1_}&Vf)#g)a7ovd1c37#Pm-z(lIoRC1K%KAjgYcBMVpuO z0|HzdA$5+W3B{^RUx zwx6j(XUz{h&eOY}II%OlvYo38#%Lt9Kz76=@F~WtmmG$7sUw9u^~)$rOX|G8q+|VQ z2W`>nZ2a_sp~6HQ7)U4}yxWPUojvo&9bB{4b{FIMi+K&6vAerfi<7z2@j0SmVyB;a z0T&2huFD%68$c@sK)(fG*Yvr{`p>NeACd%o>tCL??^hs9uA$uQodhvar4L8$hHLfKMAjSQHTyjFRlEQlboW zQrZ)g|4TgbXB|y*paD`hh&w(0^yL2qnm3SH_x=$}vYn`}0vESE8*fGbT9Evl43O## zL4B8d?0(C(sN1fpLcGhs83~7!zsnlk+!o*Or1l-}(GzQ2N<<}3O*5+V3Fv?$#0N9G zj4x0G>yEy(<6@T71#4+>eax)}pTQOAP4gHl8p5=3cxkM3kl_Sl|P z^e;n^8*LDq#RY6Q|2Ny7uBDjR2Nzxo4@6shn{IPn(Xic|%U|vO+_&U?rpCD-`=$x=TeJ?K&RiZtViUa`x5Q=q zs&L4lmW`Jqm%5rxc2;kM3LbX2?yxlj&7CDm94@?=X|(jiklkRzq#1!tf(VEM31tz^m`t|H_kD9$EVX#<-_wV?g4Vtq0F93x;oce%bUjA8{GKfZayq%@-C0TU~gI ze5M#4{8~^B3-3^ReO|5V46OhX$w=fylA6_}L5rv-s14BdN!z5mYLD1wEyRstnmxCq zl0)-ecl7dyd(K|N&lZ|H+fQ7qQucPt=iSX93I)^L(8&6TXHc=IJ^jiHw4-17VPfSq z0)=RfTnTF2wO;+bwgL*GF`&!_7I1BikZyD!WJyW@fQA64wweA@-S9!PrMw`|JZ*KQ zd14;k*0c}89WH}BOdG}IyqiI6(w&Uzeop>O(Y)e~_%{O&h8_OJ`74eM&uc!toKHke z36-;*b9YL<4Y+pWJPj>eHdqngsY+8Ep8?3TR#X7SX58pcMOSrJesroy%4cVT$+q@2ugHNA0EHbX@ zrX4DpzwOR8uID3UOJ1w7C*DzU2yjVfyli>yc}rzaBsK$o_Shc2^Q}9jVzX~;A;a zRnu$9`;zr9T@>d% z&HrC`w257B@Gg%wqx?@EZMfpt8Jv_!jFo9rpkj`SV`sxs4#Nf8Su|2gGB%994hUYx zMwqLHNii3~P}%V}$~jetc7RP(qB$ZFN;|p4OiuiSZMHxKU)KwrDn%!}T~ySEwLa4D zx4?I*|IAms>v@;t>xhH3D!TVO-RZ#H1Jv0T#VTUbx{WKkYyxCr{oS910pKr_UBkWg ziS=Z3^Fa{61N_^2uK*SoMFm+_p=`J-`!oec`q?YXLZHP~iFl4yYPa(4(rA%jmV^TN z_j_mlEHWRiE%&RXR^{b#%~c*&VL&B)D&ENcQ6A?#6Gp)t+@x7_iRC?~=p%*a8^5Hs z)&DGkJGu_Nx8w*|u+P*47-QZ{+{3wq8M|Zh@MIhu9EgCvLKb?u^c4Fg863$Udw?z* zq0rLr-Ebd>x~?9_#m&T_6vg?-P?8(h2&~zkmJ0qeKO)+gR2Av%*o*b=2Ss%@7Fdbe zeiC;+VTHmWhXx7|X^QVE`?HKypWoYCKH5^1iE*ZKHv0HGJ`uskv2d2KL*-G&i+)t9 z(h_;NAzO&4b{F|e9&)4qAR&vpXi#ovZsC=D-RfKg@>Uc2u$6JiWVmy<%L`Bj>uT4H z%0CMyQ+z9k(&{R9n6%SF|BgvhFUv|R zQ*;v!@J{cNS#{^~WAcklFT zCVo&@R6(B`-tOYlJB8G`OtaqXp&(j`z{@X$a0^VgmB*iQ19|i65uJik_*P47gALkd zI)TJ(A*|3^z22Ofyw7shfKY)q{F6^RBN9;TkcCe@UD$h|hvliZTh99omMP>VG{jye za+9?`TH6$9!a8VBSGCxTzu(PcuSLd!$h%R-$-JSbv_}H- z>#sb1g|n+{`p(*o?o7Y~+K`gs$%ZptZRr~aCsIs%+R#_WfBYxX@c&|Gs=pwz`(OQx z{dXvK(#ulf`xZ7<(+2$Iu%q{l-*_JGnR8Cj z${px2T@~pcmc<%T*w`aT;{C$BAl6(s?f)d7lU+-i$|v$W2@cPDid!6zL)A2D=RX~ z@dkxFk}4%F-|0)(KH8Z&dxu?RO`}De4N@HnOm^o_x(cVhvHqdCZMOwQw+<~^dX*jb z#`lHflt4HsY8m@ptV>fS`@{0hUZKn+S=sjWCIZbHyX}c24AzEqALgxXq3;7(NPf0> zaJB}`Y$s!%NgE&B>`=4mWmmR4snS#9d*6}?=z$wKwm+%KWEZNk%Ojgc%axX*>}BGU zL6c#&ZZEYQLIW@b**{SI8s`(ewpUWMEoiUcIddnqgq`%6&Ga07tmsQ6WeJQy#;opW z6OIOo^HS1Pjgynhpv38U3#Dr?W1mROgv9Oe14i30U?X0E%?hb z*lm@fKOwWUmom~3acwrN{6Ypbl6V4L(r{XW5+=w?5hIi!e~eeEhjdWub9@+I<1IJ6?T&_^3=?Wm3d2S(!a^{n`7= zX6@H)4HO4fzQxyvb_`uY2$4r-^&+(O44BQlyl86ak=qFFX(P=!wv;o$CpmNQRN(y@ z)^%+d|0sED)S=1f^FM}u8h{t%=PWu4?b}12^NYreRX+F) zKU84%rcnlcBZiHSP|l*P!-xCLF1{#RK?rA+s$Lb^Xlg2hK^~}0CNfE`+KTv}7{CMs zn!Hp2-B_>%`s$9^BX25J7lV0B^mfY)U9BM=!G2?NOs!$VK-05cfg0)2ehX~*#cq=h z+K|RgoMqs9Wo*e%C~WSfskKGjg3}hYpR6)O&jM-Go4J^wzC_z(*trQg*ln@8C~>We0?h=EW)jgblcf)1~jQHkG(pf`zUINY(B9X z4qdVvd2XBi?CQsrwzf69>HeAvKMO%hhn}!5^9`6oXPSX;#5s9uxtch(Evh51#~A!Kx8(glwg;sH{_TGp1g2=zlYQcm$xTq;TSEPnl9PZY*n7hmA1Y0A{$c_KGV{F(tK@UB zWa?cb%I`GuohAx95BE3;;9N8W1(Lnqad#|$AfM4fxPMGTD*FZa9QGfDQEGBlSFXl+ zg|r{as(2Zm-0nY>u_SfsLElx~fV_CM-sX{$g`?mYj=)#80LKVHM}JFhZ`#P65C#w6 z10yj}=?`J51}0#WI!E!-u|fW9Dfpxaa~;Q80pSQ4{-{2+?`!b~T=i8&s4hNPuzBcq z7Q-`(b-Wu~96XGdLPLG2V6j1c+S_V+bCKTQfB|RIUDr!jl1UTrMLqV(f%y@<8>Y~V z1#J-Id!JJv)6Kv4h%M)Y=|3nftmDA_m4czHn~qd}DTP{lE-7OS?K610M5P8&B1>`7 z%#Ni+_~a9PE%aDCdd4I5AuQ;J6TlZ0>qFm`>EdISCinFj-sKcZS`sm$W?9wRn#wi! zJ1KZRWDI94vo1^v#Mk?1dL~V3{hrsk2E?J3izhkaraCVDuhx&)5L@YM?fk5s5>aB9 zJUOvl>oTZsxTUsE)01ndlHLbrkKMsJ5yY`qvWx=Z$noNB~B#3SkN5xHsm{XAhN;O;aZ|zCiNG+_~ zaQ(V)^lwJICncS4?>wwa?S~?Ta8uFD^`$t?aiJjES@x^#^=>KnnsuJ6`J3@7G&>mO zLNV^jb;3=lL^rY;eJz}ImbFp;1H{k1>AfyA8a+8S=O$NtYdtfr#$F|(M(a}WvVd62 zsz9`;!I}$xaq_wKD^a<^c8K1_ETgio`+FKTbRT4M&R5jpCG(usfaWOB^g;;~x0D$? z4$}RCchy9&NEyTJg#@|637gYtXP4uF*oa;dK{%~1`{mQb=Yll-C-}+{Y32}V10dp~ zO>*UGQR%rdg>r%Zk)tRBWc4UX$Q||B3Mxa+roQ`~{%UD~1ay^AcZ_`34KlKsv!6`P z5^k^|wK@_>bmrQpxt>SXms?G!<-cjj;9D*uVW;)a%svG}7XU;hOa! zK`8Icu!R9_jp13`OJ?^Z%MGY)p@}-ZR>}6P}RP_}57)aNcgZc0$m%_P)&~~5w zg#B0zj_CpKs+bC+TK+ctRt0hN7xYhp0xJIimL;bI_e5p`bGkyJ$D+gQ#7Ijs=Sf-H zSSnfEes(*rFtty1>i8%jmMCO3@{L^jM*e1?7;#@hdD~U=8-WJ$d*nKldg+5;$U~UN zhAf@6P%`^o%~*j`Y_Sg#<{HQ99nHel!jz(#!OE$qt;)u{%`6BUf{3PMxZZhzwpAK` ze0lK|`rzKf$(zj{UrA`>5#neYCoj#o($X}W^7Vc?!g|dq$LYx;i-u38eZW#O2Sc2>4*W@|jd81&~Yj)i=*Sl{9MnPB| z;m_6MvPc+Z!K*YpLWPL=W7r6!W-vI)`GALTS~9w&uw^dmr#^eOoGDyBb_i0YrTUl^ zy?)RBJjDj0EGRH_09c0YNNV3}?1lJyfxC*O)z~i>I0Zh^JGYi-DHf^DC%Zfy>=sRY zThm8k<}}Wi;b3j-)1qh9huhGb6YZc#l>eq-BUXdBoQ#Wo;RnsmYn9HS!o#vm)>Hh( zw43@0{omOCK*Ao6mdj`ad!fS~<=(BBpE6EkU*n36w$YQDl)SKvt|QS;uhQNR_2oirjD`5 znk`j}*i_tCY-s}TuRB`{-Q6hokfL(uu@g`21D#*NWZHcpe)DVBrx5m#L8RLY%Gwix zOyM;2o!iHDzr>I);D^U*=LN#;>?;*>;#=LP*W|2Ebv&AczMOUsyfeMeSn;%VSF8I* zZ-GAQ+)Q&B+DCB>#r{;i0>O78pMmncf2UoKeF%FPfYF8Kw*&jjXWx)a*k>DH<)o_Z zjk6I2`y?F($kIE81^#pI(qSq$Pf7~*hW;}y>tDEG22O>T z4yFyC5KPmbR5-u4-*iXM?enhoC)T#MW&$2virV<`$CPAa)KX|NF3Q)0Tfg18qJ-6c z97JRBSxd0g_QxJQPQ#?Sq4*YV<_?^r<9GtT7d)QC6f#2`ih^yP- z;5=x%`nu6+oo9f9BNr+m{7%VPXM5(%lXAst*G1FJp{C)j+p)jh>Q-v+PU_~an|Be* zcsGRe?l@^ITPgn9R$uDGVWJK0oWa|VeGFVeUA|IJKU&Ve7YP3{Fb>YgGPP=pi7D%50WL26RNOFXfyv29zBg}7Q<~G z+7s*q5gq#P2&e)#h;s(*c_UJkpz$WU9b zu94$ANJY5WXbZ=Us15WZQt{WFj_ekt^#0%<4 zzJ_!n$9Jg(&NF3-Zc{zmN;MHGI`MN;H8SLC;TC{#t=ONgP?XP{G(b#Gl$HL@m8w*! zbil#+ARX^f-g}Yz(k^^H2yDEgYbqAO|M{u)`o(A<2S))NbW`~xK*9xKJXCPzFMO0> z>fj))b4#Q4WO+GTio-NzQSshum z<31nVULBVj_QA2P!f&5)=%`K=Kb;86RL!!F^!%QUNr+*#^4pFcTWDHqj!#zLTBLe5 zF&S>%rE`fT)9twz#NGG{7w5~`ojZ48&*7eqYt&eAD=*4#xzyFFu}nQsIhP8 zzoQwmV2N~G3aFyjJD)(8IbF<5cA2>^R5zM5wO7j{ee-BKJF{eNzY#Y6&A+>&Ifuv& zI{=oZ#PCu`J8Tr5hWtiE|9CTMBlc!Em#W8RV|VXRt}vNO&=)R-zuqsD$K|d#e-Gg{ zn`q}oH&_cc)j(GX*1Rgn_9BC)Snpa1^i9a8`TWrW)AwSImgrF?f#~RCBy& zB!JW?MAv$=IN{(teP?dINnzbU^kl4XNRB6|sDllEgyhLmdDAT2Ul9qBTX^NKoIPAz zF}5Bzo;xe3K^}!bRN5mmQgxbam_Nq$bC9qRx-lSushv;SrP0DMUj-EW-uZOAr5r|7 zwH`~al-}&nyvIVu17OUEl<>_|v>GDHImY*w2Y-X+ipehdb`*2wK#P1>D1 z?Qe7?2^`XN+PXO3^@IRm%y$d$0ybi( zH0W`{Iw7#&Drwa7&!b{uX_qIXjh-%tskNQ~%E3sx#rD8^WbE+|06i)73WL_v)0!L5 zvxl{EowjMI6iKJ2Tc={6@bgutHL=U}tv!EG8aev>_nsJ&+~x7P;w5VKx3%p3pickJ zj-_Q}iSY>`3&WLW$X_BlT}H*SzU|-h?9x8<5r-JV<**l9r`94EG;$gVf!eONh0BFs z$mXPRHJ{I;Ab~iji{IA5cU-Oagd)6*4xe5PGx-vcn_L0D3SOn-2}s2O^|V$o`wz0M zOF0wZiz(jS>un%s=Ed-%kX&ROIt@y-&2@&mX(u}uYmN2oo|o?DJD#-*nwL`!a~M^M z-HWlLoeSQiU33la4jOVf)p$8}X}8;a*4ub_QL=MJaCv@l`Hb50{HN!|CG{!%a>&sG<7 zo1x3?>6uJnlxOoZOHAR7yv~c~io0q2P+Mf*?|h<&D0@R9=*4L#WMf@Y0Q>sNwucqe z5o^ZQ4d!AXBJ&`^ieaHKMWZKBk7Jm=6Va88hbj?5g}piN=05av=xx+>|3u2VW*_ml zT3vZ*X(oKnN7uZ+GD~5s@x>c%%N`t@pRGn2aD#45@(tu+2bpew7VRUs7eb6J_d^4c zvsi+Whv+qlzuVp6gQP3}VD}@W zSnl)&&PT78Vp~BOaw1zu;vJzYZTcvs?_mfr19FGhoLUKn#N!zz zcG>(W!BxiL!Qc(|4~ld5qT+Jc{o{VQrkyYL0&vf@aGOK>;XvF`H(=nb9}a$SL=!{7 z=O{&JBp~_WgmK*tNElUX)57|!Rgp&i09T$fkAhpQEm_1~zE-Tf#5uw4jnShI7AA5Z zexG4Q)L+fg24l$-QhM^%5f>9E!JxR$I_fX!d3aA7Z)2L*!`!_c>EOhIXgr6vm z^o>-|UA6`Tu>6x&UIxWk%V15UvnLq@_DoFR8T;WoYkYaywt25$($4V7pK+Lz3jea#Dzm%=RXE_9s((Pahb+HwmZ8AyC!B$jp)=Zjx%BC;Zn!x_jVMOFTc%&C3l zx}mHA;J94rcOk~tc{Sa=40v+L5hqjN!H;?16tOy-ESe^H?PQjI2xE3DQ?=(;X?k7} zUWS}Qc(bR0ZdMkyQz(3g?ix%1d<*#dB}aH#Gur(6IT9z-6G}dYLAdsmz1`@6P{T>?7bE0K!J-Phrr&)iOo@+i1&(S+=dcC;0GOlv54| zM{PL(Y;y(g?(b1vH-V|ZI8;$FosS zF(E|IZy~^T?ga*d*8;%Ly#MjDzSiD*qU$$Xk!{U;?_UDC`pLwIvC#!R5&|-TQy>w* zz5YxX^!h4{gK027y{=xC$VRMvoGZ8BGt@d8uFbf7DXnTT=V8Li`zeT-aT2*xLrw_i z-C}9#(d*f9OHOpYHP7s|y-FQ=~eJFXK$aL>v&J@zEHYjjvE;NqfJLK%=E*5<#ulSYtz zeaW`!J=lcb`!b(FDk;%tQyX2oaKz}s20NJyvv*BleWunhA05KKKQ!U#Z1K^_X>}5m z9CH{{NvicEScie71YVHvJqvnv?C>PzN9*XY@3Vm}DdURzu$r!GZROKqDzg#|b;P+# z&YSKM;ht%{tyyQ0JR5b|<+I-k0+XCtx3Fb)3s)tp$Igg zzTSET5!Btzew5QD&ClJPjfaRY&!n}7M_xu@fpcwK1p(lN9|2^Jdzh!4=EKZk} zs`+Kz)7cqSB9ZZZU9ZJl0Y?Wdi8JsK z))&J#QHi_HDZh$l-nX+NQ{j8T^5gR`dfL}r49SvIMKxns)EX^JUtBCp*Vi+rs=PH) zpp$~ND$yW0GmEX~{k(5GSvhxqfLBy_aR)!JYSZ&f-n7Dw{qkxZ!KgOn_dh;1+&0(W zJThEi15gc^`+-%LFU00$1k1rfAu=;bZGycJ6)ZR$etAbKJ2X1>2cG8QhS`+=w;79d zqIhgM!60qwBC?ciEIjMC&5e}fjTw*jI6 z8(t`XykK>H-}~M}UHMROPfT;2{q{jctIGkr2}@AjB^jYif6*t^x-nT}y~%mG@nY8h zRO6QVIB3d7KCxfddRlk1De_>3UB1F#sZMvLGSiivDR|ploo0L%N^#(+=6^5t&{f1J zPeig&u63oYYJ8|Tj`b<2__WAIr`=#nrI|qbnxp(;(i~$QeTLkYu^;_}?1gc1Tj(<< z{SgI)tl)z8`Ox?uG%eo#sXBAyj>^@MzlDyZ32%>D-LKJpL}q2tO3L<=K-FtJ$B(Mo z)rxtNLUSNa8RbGp_eTjAOF!t&H-AwuD8 z`l>v%7-n(HI%&;`3i0DkKEF8Gd<0W%Z$fTB>^-En9(6Vi_DsOCDaLwCnZ~g_&+kEie;KRhG6b2&*Ax$DOOjtN9hTZjJ;1F*nZ?MKm1GjFyRx@D!zDyI^@12;qrr zI_~z~{n<6))GSknZi=3{^r--4)t&ybOCMA8ue_ap&_lbndpc!idK5C{ zuYaUVWrghr4qA7JpHwQGy)dD{PyQ}V(9rqB{>nWt+*Kw>?R+Z=T1ut>o#Ub5WK0Z9#uZ1cW8g?Vmo_%p9{L5xc zTFgvB2R{dP04j6=jV{-Gw(pvM%ZfX7I83VnWlk=u8QiX0Zd29SGkbXuDnFA1pdnt+Ts}HAd+BdSPx`lLvhOqb1X%^lyf5@m_nk3WePnOT3H|X` z_AJeQ_QR?BjEhqbp^f%*_(8~<{u-ibKJ`wZk<6ry6F-bZ#OM8!*wd`ZIh__U-i1!l z<+KDpPxg-H2fpprx6Jt#a#i04_QsZd$4aqZ5VJU%)4)nm3VIGL3H#V^7(FU|Ttj2B zCg04~7#7?1X|+5HnxxgPQ$1d}THx~Ceu+l)t)En2iTP(j5cBOO*8eeLk5+ zIXMAGMbM&mhki+zdFXx|tCkD;Ot+Df+2s%v^1wgBPD&Uwp<_ITaj>+Unw77mMHj{Y zD9gEBWCQv&Ya3%J{!TSh;6B5aC>K)`0a>>{%ZGx9Q-wgwJH#ThSP4*`s6j^f-+nnb z&y;$RTxFg@F#ZG<_|HT)rkGQb=qwP$69Ny*_K;y>UF!nT7F|xqPveQt2%4!Rv5u16 z)=>)gdemL->qmer?oI$(n<$R?9ODeyvb-NCI_c&*Ih2txJ+bkZZG$HZubkxLRr z#eRonCUL$Xfn~-ST_XG9vtSxJZpJeM=|}C-NOMfb^T}_qB(AoQkjJV`(vYH+D$^wRDPghoCxvxaVlcxUo}S4ElZ;qj*}Hr3Iuz5=XUW|jV4 zSKHfuvfzDT<0lm50DGVB6wqjzsQs{nbSf4~5#;`zJR%Uhw6rF3<3k>R=k8C|D@xv< z-c`x{gs=W=14*IOZk$hhIQ=Mo?UQ+svPqSZ98+Z>!zhRGJ2#a<@Els#?$}pbrlnaXvXov*>FPq2DZV_~+)})$YgS@%@viR|4sJ`Sj~vu@ z6%fv-dYLRaCItqomWm2g%rkH;*5`G(`uV2%vkW-#IV=1qq?c^fh*1CP99-xonR=JA zXJ%aRb#LLbeKuoWidfOu`)-f70Xaq8dB5UmijUL6-v18vR%M=?GKq_xbpNr~Rue^j zmn`IjKE2<&wW~Vdjp!#X{BB{;{$SEy-#^G?60C+`9oexIM5UBdGc$(2(4*o-bGB8x zpNfVJqzn%vx*Xz(V?@*DALS}7&fbdoc0&I9a_jdadX@@uvruHkYa-}}5bVqTEENmH z<$Ruz*=a0Hk-$8gQIn4-Ikt`e1;W_9u%Pn@f)~I1)lE?S?&}NRz9h*u(pO$KgF#NWQ>^TbB=~~D_{JI%&r*>XB=1u@u!a8-?Ax4+$RnmZJS>3}{(nXn(tj|!2 z$u9dhJ-TOGZdPL@_UgHbynlaZ2lC}Icr|}7t>kv|WDvBOUY4x#`Gsheb%mt>{?4m3 zcPF%-c_2@K!oN6LnX1gaDx{LEg_!|yZntVJ3Mne zs+C5|Dunt94N21_{t<@8Tz!+BXv9(a;wa)WX7jkZdiy03G&M5v{KWcnQz^r*%U8WY z-1DJhO1_Re7d(8ewK0nw(n%2kv74l+kxb(Y+Zu5`zbUbMYbZ1;wfD2Hk#)c-o>jc& z0E?O)%n-WSAA2f0N}TOT^~FUM$VKL;Bu=<~JAL}SY*C+R#}`j{$?L5r#PNwONmsi& zHk0i;x!pr3AkFN|$jB$FWoBIa^+enFI6Ecv!W1O!hEhad`&HTjTQbQ~J^uZQSn@B! zVb&4nE*&1q5*618TG&w7v6Fo_aS|?%{q||gsH01yogf3K%(zu_k=ST``GQhr(t$=y z)o1-w@F(5d`oS@<`d)4T%mbV9bS#76$bDMYTMyKg;3W>xuYa|Vuiu3kO=4?mY!S}C z+7ro40`h@m;WV`cL`n+Ur(RiYJ+J(fw$o8JLHop)KhVZNOw3=yA4c@1sMf59i=2U+ zV8ZXfgo9(AIz^;&I9%%lYEFILN%{-ObN*h^^^uWFdtvlvV{{SBdS)8VCnCF0nu zC%;STP_iSq{!1vMG#i?<5mT7|3)Wwt&wOTIU1LcihM7iO6ytA}SWe}HV?M2%`l`RK zg&YV6b_#`f&6U$2% zMwmx5BMt~*{9@lOcRhVU2zcyB(Qk25=JGO7Kb*Ige?As_x zy(18bM;hQXVpUOk?kg&MTZk-vttHCj{Cl06X03o~{p)?FvLc6k!+zRP`@o{=F)Q+i z4w19n2vNMa+b>G468g_5FM~9QAk}r0yd!o~@D>91fp8k%Q_OI9U8byA2kE(74bIcA zSG<=Tl?^)61C`C_$nhoPzh&SEq4QTX-hWbMBO;(9xY$vOLQJwVp)t%j-<2pPm zOOCFXc05jie*<_sC2FVvt%NSjqwWLwcVJd`|ge2X;kg3e|V}Fn1=caE_7C3 zOVg-5{A5JAl&FbC}~VRlvvow5}fZWX3CDbmZw-FsQ2Gv%W| zsD{UMi&xTCjBuevdMvPlbLE8=wY8@G#AzWhjS|oNt~YN5A@9cdu;ritqj3H_HE+zXgcki6n^l zjC~|-_^JNE!Tl>b6`vTYFo*rvJ(s-PLU-{G!g*oA`Hzj5qtG)IaXC!6#yQJNy^SXX zJf2(%G#7-y?zOpviTta`cUNwZ)r45{kK>rVod2-8+Om`8`3BuRuFRXJMP5Wl?Km9~ z98DJK+=uYFmS`q3e1H=;0MwJQ>o)Md85;lWkF1!dzLstE8D@N_u{rhPpu7(6cy@P) z_k3qUiYx9CmAgKlUs!Fu<&&QvHN+)U5>h>Fz}uxy{U7gDUZQ%tEA(N*w@Y%YALLj) z44-R!;qV!L?z5h>a+k(MTRMlbtgCOhwyb1^Z~S05myE-+dVjSg$E1RP74=7qS%g^l z=hRyM!wLMF2RxexOptRu$wwEat8!$!aV^i%zS(QkU3#@d$Fnztm_``=DA`kl`1VFtseTv2qH}rHz<3S<3yNQ@<@iY;%DveSX|Hn9?V5TH% z$;VmK^qsGJr9LibaqX##P`X95cewQJ|IsoulYoHWk8%RQ{FHxQ6b4a;b!v&E`9OQi z*P}-PVo}YiweOiM>)?#8iVP0U{R{$vPW|ExIDi0G4sN@H9gm<&Nf@9Kp$(;SYNw@| zn!9odW$YHeZ8#X<{*5QAo1i+s z;sU4R%S(8NMm&+%po6I!{}KP3)KsF%61o{>m+?Akhs5+*XTnn)K?%Utf%TY5aQ7a* z?UykJ>Ivx2+7_~BuXx$io0J*J-%bWx(>9M@0RT``9I;}nzqCw^BPjppMb5V5&Q?2~ zKUqn8r!hQ~Y65{s7rhkDkXw8OG?5TN=U@0Em}0d7qO#K3O*5KmY9z*Lj&ZFn1AgNd zpc6@eRs00bgtrTN8Z*vBN>*LR;a{9`Tf52(3oq8hQ4?vu@8jUm00DB986!=PKbX)J z3X>mLs-6CkV15VO%XCcJVz0*qbkl8+Lk})rsDJa!9@A$4)-*AxymjFe-&h+2gpoeK zI?=S7qd!L`MTs|8*$x_TJXgnvt}7$1VrhK%^?ACz0aq1X_m^>q&bn7I5OcbFD~--= zEP9B)l&j{$8gcQg*Xtpkcb+v{I74OFnxNW@bR`Y9n}eQcJ`eg+OV~x~TPfte{53v) z+BCcM6}on8X|fGHh&o()>22^9Z)e4}w4}-|iG94L$!(12h{MtQ?QvpSRmj|+DlTi8 zMcvxj0pkmOF=3^_=Tb-MYZB_@vwJ5WbsbZf^Y;y3L#~Q?;Cv@k;B=N1ZH+b5yxMU4 z1o9+`$=T5%y9BBrL!Ke*%a9Tav_~BWd_M?r=+r@1#BQDh?&+n;;pNPc^y-}XRBX`8 zzLP0CMSD|RJU}@aw7F$t-+3Iq0JoWg*Orq(6cO3DxLf-&<{F#PZ8unDeVZxlB z_j6^lkWNd_*f%Dl_Ls-##|Uw$GaluPfrt5re1Tq~?B?a+*c*L|+{#lx$?A#_J0sBC zeE-+A_aB9U7u3>}&W>||$`@aCgM$Y@@9z@-#gOn`1jOuC`IFE55m7f?+x0$0G|Z0- z4W-7)a2Fv|dklnw0Ijma#DsDaRV`c;wdtfnz_@+qUxnS|#^a{GWfdcgCyIOk06Lg& z@xcx65(2e-AaDo;uQt^uhH$q~ITyO^FK@<2akQMfF{slY_Egslh*~``AdP|-O`WX9 z;Y)7SF4$Y7JWDS|FhLLJ$>MTybBvw$fYHQG3FktE(=hqwsQf^0m{PnOAVpN1F^U=J z{Xygw1F`6Ln$Tg^XaLxu%3`9tyIbP$*3U(tBLn6Kf^M;>#N%S@Oj3uho*i5VdWY0P zuAbZjsEdRP%0#9rQB*!l20^Jf5p)9}>~PQDypl8P4+FOmc*tBfbX|2y%JfFYS!-3J zMFiLwN1A)0>Q0gyvPjGC9ZE@zCYM$d6*EFgoZr@EhnD5g#Yn?c3s&(o6wOa1N~!cl z3mR|FNN6}T^*wqt$JKJFtm(CYYwbQi9IXXJQ?)E$DIzE@pX-GfiKGG3IP9M3>NLDM zTFg;CAqaGSft^?7J>OeofT~?~uiBr?FkL(|BG}eWP$Hqv*C|icvCE(+?T6Tz3 zU(}~It7$W_fyW*nN0i-WJw4&dIp*(HnvVP?)_{)9F-xT7hC--X(UXiUVbpV07xY)@ z6M@~$zlNF>+>BO-XO)vY-Jf@XxrX9$btaQ#axtlwdbVa?E5JW#MXvXs61Dc5KcD-m zKe5g_rjEw&@atL=Wkd7R(?_DdHj~Vc7KG^UAY#Q?)|)^&_u)PPU*+aCbm1JtI|v=2LJx?I6^Q=NJGmpovBtg^ysbpR*+&htTkltx8HIG=vHG`zvRt-uZP zx3M@n;3<5=ex_(J@Y#JUvSPSxKoHQ7`b2`PTwEkv5v|^Wd?GN;luy+{pVrGotFv4Y zzSF%NUQAH@D#47y>ZL%X23Mw?utXq|SY?#X#VBV)gbz_~V<6WJv=E;!$-s7^##;Im zT|#9p&2+f z-5Pm|@Zhn7dW=UzR~ic+#cgfr1F<0Z(ZAZ#!;EmswzJj_DUO*BFRD*EWbP8th(8<} zdiNkfKCY$^OWP&&ajbh&i}aky(`mC^2fPOa&BWDYpyRcp_N((mw{ z#tmku7wf2oN5!>1p5N_yC+Vjd*J+cC|3Wb!RgoISr z&vvj{ZrQ`H#?3z-hs;K(Mi#24)XU|m-`(D-EzV}4++p=Ij`Bz@VcpPiIKQ_#H|HPP zUe7Gqii`r?$@=xA@ex}BW*#qdQW#9=X-(B;?!!v}Me`+iw)b2?nQIaz;=Boy)vrBFDWb|na zM3YtK1U%G!%6OoZ9m$}=q9^kyvz%!kecLAm{~v%{5QH2m+YV%-(tb;jR4IhoPyVOq zd8t%we+h#=M$lr0mAMhdXH#pb8~u(6FfBAPll^Nx@yTjXd>!fWa2UITqfRu{ghTd4 z-1F@z9~Og7$E1vpPgr05M_Bl$UOf8ZlSPFqGsCgC|wFdksD1tH+tz`*3c zAr!|c6rPMB;1<)g)f|T2nx2R9wa`t?jg_SFxg@K(<6{?f8Cjyb$FlmvBd_1 z92kf-PdjZ?6P7vJ4+lyxgb3pc{@I~KncNUq zvzw8@4o}9%kzVVwjy;$rU&VIKrJgfNh!eK-;LWE3p0ExOlyvYdGa5hobjR#R4X~%P z(x@jC6u_~ECIgOjv5@IK(7gDJL?tXNs9IUW3(@|yZX>$7%418qYu*DyDPKJSmt8-9e`cS;S2$xX@RxMhJtTMBEdN*8RLD*v7qC6rD$@t-4U(+Xp=wIF4N{ znT|Y-rGUPgLwCA1xSajdF5p-qe=i$@UsO~^(PgX+BiP&Ss&2g_1Zkr;nMC`EHe%kY zRL;av6oC0N2E zl$69~DipQq&Q6Tdawz2a_!qLVgfuydCB0TSZ`-Jz^8CC?=2ThavK%utHT-!)=#7#( z7Jnw9zp@KbuS*iFdroz3T>ggAZ%f(ylf;XC4fp-lyc@dQQi`~3shub6V_2zzf zMn*C8Ch2m2xODpOv-*oR`8VS4 zL${(yWRsfhJ0c1UYx$JA){kRJj5OR2VVba4yyqQ4wqIac4Qwf+OVaoJzy2an0+v9e ziFGr-Hx#yW8Iy_vnBLmOqL+)WCSLq1^D`X?fA zd4efNn2s6tm8nU;4teu;>#DsY^jlCg=bO_xT>-IE*YXpo2NTAQSKyI_SA%rhbsYEA zu?VJ1Jhm@R(S*8j%4{a?2KK`mJcAzZp#-xY{~Y+HNiYQS@iRa|Q(RMff^?XVR)qgY z7_~=-2`G8^G4=uF>-i9H4)cq915V^dfdJ?cWWaBIpj%~A_RYW5m*^su4hBGA?~3gs z1hU=h?#}-e>i&;?r~iLp|G!u9-*p22dq@7WEBfEM__r?pr33yyy5;|E7yq`4f7`|X zVd?PS$-#eKgZWoosR>h@1f;Haxa1$AwLHk{8- zlTD925!3v|ighmj?Q{Cak zGyFfSwLlpI+q1TMQ}be*tv<00eVo6`KR>PdJU=NR;?k z3f*pqKQ5cgvuzhPCr5WZ3vtSE)CU4ir|;0q3AtY!(s@El)daR{w#53@_Z=W^17SqO z#Kig;{3r6et1n*N&$0r!Y+~Ed=@A3pt7u_=6JU)rsw>t{RchHs>LSLC>__~1HG&&B zqY*b`c^SKF7e+hkKOM1EZ(H9ty4=YO?_4gh^YcGk*52Qq>*+y*mz_F(+A+PPpc|tc zp{<%4oTd<(XucHR?eihPFFadm9~ZWTEV*U&sa6M3-M+360&LGOxlsEVZdD4L)g+d ziHeU?4@}nVO})2K9MIs(ai8BUV{@Xyzr&LtS%AYRdIlaj;@zZ<$ejk1ND9ymMr6?8 zm2ercSV-mrFZ4mUD=&WG5N_@e-AvNa`jfNQOf2-5=nGhSUkaUd@XcCm=H)5RNMeI) z221bzA&o(1;YSq67=JkzZyIy<^YKl5hN^^y4fnKQX>&)3bt`)7v-WmBI(RCwQY9U|E)(ahXEFG(Y;IyVz5wkX{_3J>_lOr?Ku)8< zw=`C26^*vc%$D}qKzW28IkK7Ut-u+~zCJo66Z3)^4{kisvOC+~ZmIQ3wFbrcQG^$| z^e5wpYxsrf)%9Z`yi=D>1@GM00xcN}Cv`@5JX@-t`Dw=e4t4iKRyT9zvERghr3*Rr zorsc*&?edy`cYSXPG_zU+)b@Yw90=S7JsgOghPK#95n$vs0k}zX|K#s&wmsw*8G}Kz##+< zu_ohJT_q3y&%0y(71saP_b&fSCJ7LMp`q7A;MMiatG|ihqxWA}QYxUe`y{Aq`GbZ`R6^${}(Iye>lY6lpS2a>9=A8$FX4z&@98ZzOpn87>aoI zXPu#66N8g~NP%X7v#pBE%uJ9glgFO;9RH7HYgt!xfNWfqG&KmEy8L0`=1qY z9sv_s19t;MkpM*qT<-*0oKAt(^gJSH09g6yH8asn1SRFpAVB2eT?;v1qfW_By=&T^ zqd0jm<-y6XA;MK+z1~+nr!!N|Fv5<>>u+iD!;4JSJ$fMzQovl;o^8wZ>W#npkX?J?0%qK7*^=9hj2H*zp4z3jtbC^fH7VC-t_XS#9tC5EW{exukA z7fJNM-^MruF5ouDxa>JMMq zFW=6O?L=wOSdF+2y`)EMYWIO^#^%oqfPJ5nq~b@_pn03PoHwKgd7UqMwXsAgO^c-5 z&+#<>(832(%}i5{usT{EY$G?7QzPx7kZb=5s%-ZUbsSp-eg+! z{#r!E<`)ZJ1ITUL6gTLe_71{EdKtiv6G$)`B`(CGvv>6<+IXw2e!K+A3P5WtR%LO1 z-&rmvd;PL$JvXpc?1R|t{WvJ|$TW(KAfe)Yh7Gz1L!pbcWLt&d<*#N-HScRXpngxR z?N@EroNMt=wg>12^(=rE4=@P@WPLGIf9L2n>WfIZ`kAYl^=F3jHwEv}dG~kGsifWG zwK1?qMQ~48^p1h}xLH*VP9Upos@A$RvB}D(`B0QZ$pC>_4>5%T)-a|d7pythVBhU2 zPc%Nc*N#!nH$+Ly_U%=MH`4T4BS2mRAnln!#*&SoF#%{*-?mXgyXE~^dSy$Nf7#^W2i>_nY=RZse?(9i5bCgi)8w&dz$Qv6M_t%o<&6JlJSv zWbO@qj&_CmFZcFF@=M_n_(~&+GP<5>)`2sgN#Hcc z4mJph8wXFt!z${{!^Ex_iS(b7-%f!&@7``1}PZ6&TZ^)H(;uM))v!#8yu>UrujoR(E+~lnx9@I6}b;^qs$1 zo0SJXH{us4)FTxQxIk=;Gz*pPngxfDg@UE2_|w6-V5E=BmA~}7b#{N9xF`3UxOsZJ zl|XEz*;Ni!mbTzW6#>;y(7lv>@#|F~2TP6dupj~`b6~@Bk2obj8Ow`vrx@K=+BD{1 zBhic=n8mS(|9giZFf+E0P(TU6RPI$XGa9S&`A`lXQt*Xdj3qQ+r+30HH&;~5jL@|* zQ4EAu@aOP-I+z31R;VU-Q}_4$l&ZTQ+I-5PnkN-OOY)ThoQUGd6UEPzJ23J%HM0=f z!iUR+_ju`Ip!vMdE>zaM$$$a}0hTAY%|MSj=uv^4sD=&UHxcwrZ*54SMb*<)^UTZ~ zBQ=GCQa}mBQ_>Ut&S}a7ZAp)AE9O*;P~r4`0Dx1S!mygDoOr7!mgOZ}r01@J_QF@O zP1RiB@>h_xkvlMHxHLt}9g%9z@=j(UR0}^))3dGsOS6Bd3I^ZPfM&q|Qr<*X*!0Vz z7Mj4%fQIk?3@(hAVFxO;VIU?@AdKbdFoe(o!Rz{<2OWmhOc<0QM{->^`)M6Y3RU2B zIU>{)MsZdMy#L2Ei}N&1#^-kPKfT(KODlBL&_10#DJ-{TGF#Er73Zs1Ih~82!EVcz6??q Zo)Y-k46F5#N5BU-5+bs~#qU3Q|6e1lPLu!u literal 0 HcmV?d00001 From 5a0168c493a6097ffe388f90dec57ffcd6b45b26 Mon Sep 17 00:00:00 2001 From: Rei Ikei <39797543+Rei-Ikei@users.noreply.github.com> Date: Tue, 19 Jun 2018 13:56:51 +0900 Subject: [PATCH 13/18] WSUS URL shoud be " " but not "". In gpedit.msc, WSUS URL cannot be set as "" because it raises error. So it should be set as " " (space). --- ...windows-operating-system-components-to-microsoft-services.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/privacy/manage-connections-from-windows-operating-system-components-to-microsoft-services.md b/windows/privacy/manage-connections-from-windows-operating-system-components-to-microsoft-services.md index a948b817ad..45a8d78f26 100644 --- a/windows/privacy/manage-connections-from-windows-operating-system-components-to-microsoft-services.md +++ b/windows/privacy/manage-connections-from-windows-operating-system-components-to-microsoft-services.md @@ -1974,7 +1974,7 @@ You can turn off Windows Update by setting the following registry entries: -and- -- Apply the Group Policy: **Computer Configuration** > **Administrative Templates** > **Windows Components** > **Windows Update** > **Specify intranet Microsoft update service location** and set the **Set the alternate download server** to "". +- Apply the Group Policy: **Computer Configuration** > **Administrative Templates** > **Windows Components** > **Windows Update** > **Specify intranet Microsoft update service location** and set the **Set the alternate download server** to " ". You can turn off automatic updates by doing one of the following. This is not recommended. From 0caba8706de6f6619cf9c3f600b25ad9f7460a54 Mon Sep 17 00:00:00 2001 From: John Rajunas Date: Tue, 19 Jun 2018 11:27:29 -0400 Subject: [PATCH 14/18] Spelling correction Corrected spelling error --- store-for-business/distribute-apps-from-your-private-store.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/store-for-business/distribute-apps-from-your-private-store.md b/store-for-business/distribute-apps-from-your-private-store.md index 468df4a05e..9f74c6acdd 100644 --- a/store-for-business/distribute-apps-from-your-private-store.md +++ b/store-for-business/distribute-apps-from-your-private-store.md @@ -21,7 +21,7 @@ ms.date: 3/19/2018 - Windows 10 - Windows 10 Mobile -The private store is a feature in Microsoft Store for Business and Education that organizations receive during the signup process. When admins add apps to the private store, all employees in the organization can view and download the apps. Your private store is available as a tab in Micrsoft Store app, and is usually named for your company or organization. Only apps with online licenses can be added to the private store. +The private store is a feature in Microsoft Store for Business and Education that organizations receive during the signup process. When admins add apps to the private store, all employees in the organization can view and download the apps. Your private store is available as a tab in Microsoft Store app, and is usually named for your company or organization. Only apps with online licenses can be added to the private store. You can make an app available in your private store when you acquire the app, or you can do it later from your inventory. Once the app is in your private store, employees can claim and install the app. From 17f5e80909c661e0e7d7b410bff893422de9adfa Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Tue, 19 Jun 2018 08:38:10 -0700 Subject: [PATCH 15/18] revised description for value 5 --- .../trusted-platform-module-services-group-policy-settings.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/security/hardware-protection/tpm/trusted-platform-module-services-group-policy-settings.md b/windows/security/hardware-protection/tpm/trusted-platform-module-services-group-policy-settings.md index bcb246ccb6..fe5000ea4f 100644 --- a/windows/security/hardware-protection/tpm/trusted-platform-module-services-group-policy-settings.md +++ b/windows/security/hardware-protection/tpm/trusted-platform-module-services-group-policy-settings.md @@ -88,6 +88,7 @@ The following table shows the TPM owner authorization values in the registry. | 2 | Delegated | | 4 | Full | +A value of 5 means discard the **Full** TPM owner authorization for TPM 1.2 but keep it for TPM 2.0.   If you enable this policy setting, the Windows operating system will store the TPM owner authorization in the registry of the local computer according to the TPM authentication setting you choose. From 13dbad1def56cfb3e11c87dd448fa8a1fe2b20f4 Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Tue, 19 Jun 2018 08:59:20 -0700 Subject: [PATCH 16/18] revised steps --- .../create-wip-policy-using-intune.md | 24 +++++++------------ 1 file changed, 9 insertions(+), 15 deletions(-) diff --git a/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md b/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md index 9a4ff4b1c4..2200e5ac5c 100644 --- a/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md +++ b/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune.md @@ -193,18 +193,16 @@ In this example, you'd get the following info: Where the text, `O=MICROSOFT CORPORATION, L=REDMOND, S=WASHINGTON, C=US` is the publisher name to enter in the **Publisher Name** box. ### Add an AppLocker policy file -Now we’re going to add an AppLocker XML file to the **App Rules** list. You’ll use this option if you want to add multiple apps at the same time. The first example shows how to create a Publisher rule for packaged apps. The second example shows how to create a Path rule for unsigned apps. For more info, see [AppLocker](https://technet.microsoft.com/itpro/windows/keep-secure/applocker-overview). +Now we’re going to add an AppLocker XML file to the **App Rules** list. You’ll use this option if you want to add multiple apps at the same time. The first example shows how to create a Packaged App rule for Store apps. The second example shows how to create an Executable rule by using a path for unsigned apps. For more info, see [AppLocker](https://technet.microsoft.com/itpro/windows/keep-secure/applocker-overview). -**To create a Publisher rule and xml file for packaged apps using the AppLocker tool** +**To create a Packaged App rule rule and xml file** 1. Open the Local Security Policy snap-in (SecPol.msc). -2. In the left pane, expand **Application Control Policies**, expand **AppLocker**, and then click **Packaged App Rules**. +2. In the left pane, click **Application Control Policies** > **AppLocker** > **Packaged App Rules**. ![Local security snap-in, showing the Packaged app Rules](images/intune-local-security-snapin.png) -3. Right-click in the right-hand pane, and then click **Create New Rule**. - - The **Create Packaged app Rules** wizard appears. +3. Right-click **Packaged App Rules** > **Create New Rule**. 4. On the **Before You Begin** page, click **Next**. @@ -262,15 +260,15 @@ Now we’re going to add an AppLocker XML file to the **App Rules** list. You’ ``` 12. After you’ve created your XML file, you need to import it by using Microsoft Intune. -**To create a Path rule and xml file for unsigned apps using the AppLocker tool** +**To create an Executable rule and xml file for unsigned apps** 1. Open the Local Security Policy snap-in (SecPol.msc). -2. In the left pane, expand **Application Control Policies**, expand **AppLocker**, and then click **Executable Rules**. +2. In the left pane, click **Application Control Policies** > **AppLocker** > **Executable Rules**. + +3. Right-click **Executable Rules** > **Create New Rule**. ![Local security snap-in, showing the Executable Rules](images/create-new-path-rule.png) -3. Right-click in the right-hand pane, and then click **Create New Rule**. - 4. On the **Before You Begin** page, click **Next**. 5. On the **Permissions** page, make sure the **Action** is set to **Allow** and the **User or group** is set to **Everyone**, and then click **Next**. @@ -287,11 +285,7 @@ Now we’re going to add an AppLocker XML file to the **App Rules** list. You’ 9. On the **Name** page, type a name and description for the rule and then click **Create**. -10. In the left pane, right-click on **AppLocker**, and then click **Export policy**. - - The **Export policy** box opens, letting you export and save your new policy as XML. - - ![Local security snap-in, showing the Export Policy option](images/intune-local-security-export.png) +10. In the left pane, right-click **AppLocker** > **Export policy**. 11. In the **Export policy** box, browse to where the policy should be stored, give the policy a name, and then click **Save**. From 437992edcf4381bebaaf0cca5a5c19c4f3b1e660 Mon Sep 17 00:00:00 2001 From: Jeanie Decker Date: Tue, 19 Jun 2018 17:00:19 +0000 Subject: [PATCH 17/18] Merged PR 9171: Add new GP to remove Recently Added from Start --- .../configuration/change-history-for-configure-windows-10.md | 3 ++- .../windows-10-start-layout-options-and-policies.md | 4 ++-- 2 files changed, 4 insertions(+), 3 deletions(-) diff --git a/windows/configuration/change-history-for-configure-windows-10.md b/windows/configuration/change-history-for-configure-windows-10.md index 8b3d74ac3b..7318dd20c3 100644 --- a/windows/configuration/change-history-for-configure-windows-10.md +++ b/windows/configuration/change-history-for-configure-windows-10.md @@ -10,7 +10,7 @@ ms.localizationpriority: high author: jdeckerms ms.author: jdecker ms.topic: article -ms.date: 06/05/2018 +ms.date: 06/19/2018 --- # Change history for Configure Windows 10 @@ -22,6 +22,7 @@ This topic lists new and updated topics in the [Configure Windows 10](index.md) New or changed topic | Description --- | --- [Set up a kiosk or digital signage on Windows 10 Pro, Enterprise, or Education](setup-kiosk-digital-signage.md) and [Create a Windows 10 kiosk that runs multiple apps](lock-down-windows-10-to-specific-apps.md) | Updated instructions for using Microsoft Intune to configure a kiosk. +[Manage Windows 10 Start and taskbar layout](windows-10-start-layout-options-and-policies.md) | Added new Group Policy to remove "Recently added" list from Start menu. ## May 2018 diff --git a/windows/configuration/windows-10-start-layout-options-and-policies.md b/windows/configuration/windows-10-start-layout-options-and-policies.md index 82f903e308..7d57203710 100644 --- a/windows/configuration/windows-10-start-layout-options-and-policies.md +++ b/windows/configuration/windows-10-start-layout-options-and-policies.md @@ -10,7 +10,7 @@ author: jdeckerms ms.author: jdecker ms.topic: article ms.localizationpriority: high -ms.date: 05/24/2018 +ms.date: 06/19/2018 --- # Manage Windows 10 Start and taskbar layout @@ -51,7 +51,7 @@ The following table lists the different parts of Start and any applicable policy | User tile | MDM: **Start/HideUserTile**
**Start/HideSwitchAccount**
**Start/HideSignOut**
**Start/HideLock**
**Start/HideChangeAccountSettings**

Group Policy: **Remove Logoff on the Start menu** | none | | Most used | MDM: **Start/HideFrequentlyUsedApps**

Group Policy: **Remove frequent programs from the Start menu** | **Settings** > **Personalization** > **Start** > **Show most used apps** | | Suggestions
-and-
Dynamically inserted app tile | MDM: **Allow Windows Consumer Features**

Group Policy: **Computer Configuration\Administrative Templates\Windows Components\Cloud Content\Turn off Microsoft consumer experiences**

**Note:** This policy also enables or disables notifications for a user's Microsoft account and app tiles from Microsoft dynamically inserted in the default Start menu. | **Settings** > **Personalization** > **Start** > **Occasionally show suggestions in Start** | -| Recently added | MDM: **Start/HideRecentlyAddedApps** | **Settings** > **Personalization** > **Start** > **Show recently added apps** | +| Recently added | MDM: **Start/HideRecentlyAddedApps**
Group Policy: **Computer configuration**\\**Administrative Template**\\**Start Menu and Taskbar**\\**Remove "Recently Added" list from Start Menu** (for Windows 10, version 1803) | **Settings** > **Personalization** > **Start** > **Show recently added apps** | | Pinned folders | MDM: **AllowPinnedFolder** | **Settings** > **Personalization** > **Start** > **Choose which folders appear on Start** | | Power | MDM: **Start/HidePowerButton**
**Start/HideHibernate**
**Start/HideRestart**
**Start/HideShutDown**
**Start/HideSleep**

Group Policy: **Remove and prevent access to the Shut Down, Restart, Sleep, and Hibernate commands** | none | | Start layout | MDM: **Start layout**
**ImportEdgeAssets**

Group Policy: **Prevent users from customizing their Start screen**

**Note:** When a full Start screen layout is imported with Group Policy or MDM, the users cannot pin, unpin, or uninstall apps from the Start screen. Users can view and open all apps in the **All Apps** view, but they cannot pin any apps to the Start screen. When a partial Start screen layout is imported, users cannot change the tile groups applied by the partial layout, but can modify other tile groups and create their own.

**Start layout** policy can be used to pin apps to the taskbar based on an XML File that you provide. Users will be able to change the order of pinned apps, unpin apps, and pin additional apps to the taskbar. | none | From 430c8f349179c0e7d42fd27993e51027945d1ac8 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 19 Jun 2018 10:24:50 -0700 Subject: [PATCH 18/18] onboarding page update --- ...tifications-windows-defender-advanced-threat-protection.md | 4 +--- ...d-configure-windows-defender-advanced-threat-protection.md | 4 ++-- ...s-dashboard-windows-defender-advanced-threat-protection.md | 2 +- 3 files changed, 4 insertions(+), 6 deletions(-) diff --git a/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md index 38e33a95da..a3611df82a 100644 --- a/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -50,9 +50,7 @@ You can create rules that determine the machines and alert severities to send em 2. Click **Add notification rule**. 3. Specify the General information: - - **Rule name** - Specify a name for the notification rule. - - **Show customer display name** - Specify the customer name that appears on the email notification. - - **Include a deeplink** - Adds a link with the tenant ID to allow access to a specific tenant. + - **Rule name** - **Machines** - Choose whether to notify recipients for alerts on all machines (Global administrator role only) or on selected machine groups. For more information, see [Create and manage machine groups](machine-groups-windows-defender-advanced-threat-protection.md). - **Alert severity** - Choose the alert severity level diff --git a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md index 56ecea1dca..5f43d024b3 100644 --- a/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/onboard-configure-windows-defender-advanced-threat-protection.md @@ -10,7 +10,7 @@ ms.pagetype: security ms.author: macapara author: mjcaparas ms.localizationpriority: high -ms.date: 04/24/2018 +ms.date: 06/19/2018 --- # Onboard machines to the Windows Defender ATP service @@ -76,7 +76,7 @@ The hardware requirements for Windows Defender ATP on machines is the same as th >[!NOTE] >You'll need to know the exact Linux distros and macOS X versions that are compatible with Windows Defender ATP for the integration to work. -- macOSX +- macOS X - Linux diff --git a/windows/security/threat-protection/windows-defender-atp/security-operations-dashboard-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/security-operations-dashboard-windows-defender-advanced-threat-protection.md index d3740aa25f..9414dd6e89 100644 --- a/windows/security/threat-protection/windows-defender-atp/security-operations-dashboard-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/security-operations-dashboard-windows-defender-advanced-threat-protection.md @@ -114,7 +114,7 @@ This tile shows statistics related to automated investigations in the last 30 da ![Image of automated investigations statistics](images/atp-automated-investigations-statistics.png) -You can click on **Automated investigations**, **Remidated investigations**, and **Alerts investigated** to navigate to the **Invesgations** page, filtered by the appropriate category. This lets you see a detailed breakdown of investigations in context. +You can click on **Automated investigations**, **Remidated investigations**, and **Alerts investigated** to navigate to the **Investigations** page, filtered by the appropriate category. This lets you see a detailed breakdown of investigations in context. ## Users at risk The tile shows you a list of user accounts with the most active alerts and the number of alerts seen on high, medium, or low alerts.