From edb2e56e822811a2e6e731cfbf752a5bf68373b6 Mon Sep 17 00:00:00 2001 From: Pierre Audonnet Date: Fri, 18 Oct 2019 11:02:14 -0400 Subject: [PATCH 01/30] DnsAdmins and DnsUpdateProxy are not well-known I added the following: "This is not a well-known SID. The RID part may vary from domain to domain." for both of them and replace the well-known SID by "It may vary from environment to environment" because the RID selection depends on other factors (when the DNS service is installed for example). --- .../access-control/active-directory-security-groups.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/security/identity-protection/access-control/active-directory-security-groups.md b/windows/security/identity-protection/access-control/active-directory-security-groups.md index afaaca56b3..2f7aab5334 100644 --- a/windows/security/identity-protection/access-control/active-directory-security-groups.md +++ b/windows/security/identity-protection/access-control/active-directory-security-groups.md @@ -1345,7 +1345,7 @@ This security group has not changed since Windows Server 2008. Members of the DnsUpdateProxy group are DNS clients. They are permitted to perform dynamic updates on behalf of other clients (such as DHCP servers). A DNS server can develop stale resource records when a DHCP server is configured to dynamically register host (A) and pointer (PTR) resource records on behalf of DHCP clients by using dynamic update. Adding clients to this security group mitigates this scenario. -However, to protect against unsecured records or to permit members of the DnsUpdateProxy group to register records in zones that allow only secured dynamic updates, you must create a dedicated user account and configure DHCP servers to perform DNS dynamic updates by using the credentials of this account (user name, password, and domain). Multiple DHCP servers can use the credentials of one dedicated user account. +However, to protect against unsecured records or to permit members of the DnsUpdateProxy group to register records in zones that allow only secured dynamic updates, you must create a dedicated user account and configure DHCP servers to perform DNS dynamic updates by using the credentials of this account (user name, password, and domain). Multiple DHCP servers can use the credentials of one dedicated user account. This group exists only if the DNS server role is or was once installed on a domain controller in the domain. For information, see [DNS Record Ownership and the DnsUpdateProxy Group](https://technet.microsoft.com/library/dd334715.aspx). @@ -1365,7 +1365,7 @@ This security group has not changed since Windows Server 2008.

Well-Known SID/RID

-

S-1-5-21-<domain>-1103

+

This is not a well-known SID. The RID part may vary from domain to domain.

Type

@@ -1406,7 +1406,7 @@ This security group has not changed since Windows Server 2008. ### DnsAdmins -Members of DNSAdmins group have access to network DNS information. The default permissions are as follows: Allow: Read, Write, Create All Child objects, Delete Child objects, Special Permissions. +Members of DNSAdmins group have access to network DNS information. The default permissions are as follows: Allow: Read, Write, Create All Child objects, Delete Child objects, Special Permissions. This group exists only if the DNS server role is or was once installed on a domain controller in the domain. For more information about security and DNS, see [DNSSEC in Windows Server 2012](https://technet.microsoft.com/library/dn593694(v=ws.11).aspx). @@ -1426,7 +1426,7 @@ This security group has not changed since Windows Server 2008.

Well-Known SID/RID

-

S-1-5-21-<domain>-1102

+

This is not a well-known SID. The RID part may vary from domain to domain.

Type

From ed081d8bdce5ce7b3aa1a9b44ef2463034823e28 Mon Sep 17 00:00:00 2001 From: Pierre Audonnet Date: Mon, 21 Oct 2019 21:32:55 -0400 Subject: [PATCH 02/30] Update active-directory-security-groups.md --- .../access-control/active-directory-security-groups.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/security/identity-protection/access-control/active-directory-security-groups.md b/windows/security/identity-protection/access-control/active-directory-security-groups.md index 2f7aab5334..2cdb530f62 100644 --- a/windows/security/identity-protection/access-control/active-directory-security-groups.md +++ b/windows/security/identity-protection/access-control/active-directory-security-groups.md @@ -1365,7 +1365,7 @@ This security group has not changed since Windows Server 2008.

Well-Known SID/RID

-

This is not a well-known SID. The RID part may vary from domain to domain.

+

S-1-5-21-<domain>-<variable RID>

Type

@@ -1426,7 +1426,7 @@ This security group has not changed since Windows Server 2008.

Well-Known SID/RID

-

This is not a well-known SID. The RID part may vary from domain to domain.

+

S-1-5-21-<domain>-<variable RID>

Type

From 7b0a5dd712e65e893cbde1d458d5ac9d800a4ea8 Mon Sep 17 00:00:00 2001 From: RavennMSFT <37601656+RavennMSFT@users.noreply.github.com> Date: Wed, 27 Nov 2019 12:18:01 -0800 Subject: [PATCH 03/30] Update hello-how-it-works-device-registration.md Update hybrid join steps to remove confusion around requiring a user sign in --- .../hello-how-it-works-device-registration.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md index 4cbec54f34..a4484593d8 100644 --- a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md +++ b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md @@ -63,11 +63,11 @@ Device Registration is a prerequisite to Windows Hello for Business provisioning | Phase | Description | | :----: | :----------- | -| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task.| +| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in only.| |B | The task queries Active Directory using the LDAP protocol for the keywords attribute on service connection point stored in the configuration partition in Active Directory (CN=62a0ff2e-97b9-4513-943f-0d221bd30080,CN=Device Registration Configuration,CN=Services,CN=Configuration,DC=corp,DC=contoso,DC=com). The value returned in the keywords attribute determines if device registration is directed to Azure Device Registration Service (ADRS) or the enterprise device registration service hosted on-premises.| |C | For the managed environment, the task creates an initial authentication credential in the form of a self-signed certificate. The task write the certificate to the userCertificate attribute on the computer object in Active Directory using LDAP. |D |The computer cannot authenticate to Azure DRS until a device object representing the computer that includes the certificate on the userCertificate attribute is created in Azure Active Directory. Azure AD Connect detects an attribute change. On the next synchronization cycle, Azure AD Connect sends the userCertificate, object GUID, and computer SID to Azure DRS. Azure DRS uses the attribute information to create a device object in Azure Active Directory.| -|E | The Automatic Device Join task triggers with each user sign-in and tries to authenticate the computer to Azure Active Directory using the corresponding private key of the public key in the userCertificate attribute. Azure Active Directory authenticates the computer and issues a ID token to the computer.| +|E | The Automatic Device Join task triggers with each user sign-in or every hour, and tries to authenticate the computer to Azure Active Directory using the corresponding private key of the public key in the userCertificate attribute. Azure Active Directory authenticates the computer and issues a ID token to the computer.| |F | The task creates TPM bound (preferred) RSA 2048 bit key-pair known as the device key (dkpub/dkpriv). The application create a certificate request using dkpub and the public key and signs the certificate request with using dkpriv. Next, the application derives second key pair from the TPM's storage root key. This is the transport key (tkpub/tkpriv).| |G | The task sends a device registration request to Azure DRS that includes the ID token, certificate request, tkpub, and attestation data. Azure DRS validates the ID token, creates a device ID, and creates a certificate based on the included certificate request. Azure DRS then updates the device object in Azure Active Directory and sends the device ID and the device certificate to the client.| |H | Device registration completes by receiving the device ID and the device certificate from Azure DRS. The device ID is saved for future reference (viewable from dsregcmd.exe /status), and the device certificate is installed in the Personal store of the computer. With device registration complete, the task exits.| @@ -78,7 +78,7 @@ Device Registration is a prerequisite to Windows Hello for Business provisioning | Phase | Description | | :----: | :----------- | -| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task.| +| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in only. | |B | The task queries Active Directory using the LDAP protocol for the keywords attribute on service connection point stored in the configuration partition in Active Directory (CN=62a0ff2e-97b9-4513-943f-0d221bd30080,CN=Device Registration Configuration,CN=Services,CN=Configuration,DC=corp,DC=contoso,DC=com). The value returned in the keywords attribute determines if device registration is directed to Azure Device Registration Service (ADRS) or the enterprise device registration service hosted on-premises.| |C | For the federated environments, the computer authenticates the enterprise device registration endpoint using Windows integrated authentication. The enterprise device registration service creates and returns a token that includes claims for the object GUID, computer SID, and domain joined state. The task submits the token and claims to Azure Active Directory where it is validated. Azure Active Directory returns an ID token to the running task. |D | The application creates TPM bound (preferred) RSA 2048 bit key-pair known as the device key (dkpub/dkpriv). The application create a certificate request using dkpub and the public key and signs the certificate request with using dkpriv. Next, the application derives second key pair from the TPM's storage root key. This is the transport key (tkpub/tkpriv).| From 991ac8dcd271c37ae814743f6c87dc1587b5edfe Mon Sep 17 00:00:00 2001 From: RavennMSFT <37601656+RavennMSFT@users.noreply.github.com> Date: Tue, 10 Dec 2019 10:39:10 -0800 Subject: [PATCH 04/30] Update hello-how-it-works-device-registration.md --- .../hello-how-it-works-device-registration.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md index a4484593d8..b0444e1ab9 100644 --- a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md +++ b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md @@ -63,7 +63,7 @@ Device Registration is a prerequisite to Windows Hello for Business provisioning | Phase | Description | | :----: | :----------- | -| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in only.| +| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in.| |B | The task queries Active Directory using the LDAP protocol for the keywords attribute on service connection point stored in the configuration partition in Active Directory (CN=62a0ff2e-97b9-4513-943f-0d221bd30080,CN=Device Registration Configuration,CN=Services,CN=Configuration,DC=corp,DC=contoso,DC=com). The value returned in the keywords attribute determines if device registration is directed to Azure Device Registration Service (ADRS) or the enterprise device registration service hosted on-premises.| |C | For the managed environment, the task creates an initial authentication credential in the form of a self-signed certificate. The task write the certificate to the userCertificate attribute on the computer object in Active Directory using LDAP. |D |The computer cannot authenticate to Azure DRS until a device object representing the computer that includes the certificate on the userCertificate attribute is created in Azure Active Directory. Azure AD Connect detects an attribute change. On the next synchronization cycle, Azure AD Connect sends the userCertificate, object GUID, and computer SID to Azure DRS. Azure DRS uses the attribute information to create a device object in Azure Active Directory.| @@ -78,7 +78,7 @@ Device Registration is a prerequisite to Windows Hello for Business provisioning | Phase | Description | | :----: | :----------- | -| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in only. | +| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in. | |B | The task queries Active Directory using the LDAP protocol for the keywords attribute on service connection point stored in the configuration partition in Active Directory (CN=62a0ff2e-97b9-4513-943f-0d221bd30080,CN=Device Registration Configuration,CN=Services,CN=Configuration,DC=corp,DC=contoso,DC=com). The value returned in the keywords attribute determines if device registration is directed to Azure Device Registration Service (ADRS) or the enterprise device registration service hosted on-premises.| |C | For the federated environments, the computer authenticates the enterprise device registration endpoint using Windows integrated authentication. The enterprise device registration service creates and returns a token that includes claims for the object GUID, computer SID, and domain joined state. The task submits the token and claims to Azure Active Directory where it is validated. Azure Active Directory returns an ID token to the running task. |D | The application creates TPM bound (preferred) RSA 2048 bit key-pair known as the device key (dkpub/dkpriv). The application create a certificate request using dkpub and the public key and signs the certificate request with using dkpriv. Next, the application derives second key pair from the TPM's storage root key. This is the transport key (tkpub/tkpriv).| From 641f61d5eef6b296a295b79702a6b225de6b8347 Mon Sep 17 00:00:00 2001 From: RavennMSFT <37601656+RavennMSFT@users.noreply.github.com> Date: Tue, 10 Dec 2019 11:19:24 -0800 Subject: [PATCH 05/30] Update windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md Co-Authored-By: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- .../hello-how-it-works-device-registration.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md index b0444e1ab9..71c0f94576 100644 --- a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md +++ b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md @@ -63,7 +63,7 @@ Device Registration is a prerequisite to Windows Hello for Business provisioning | Phase | Description | | :----: | :----------- | -| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in.| +| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note: the Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in.| |B | The task queries Active Directory using the LDAP protocol for the keywords attribute on service connection point stored in the configuration partition in Active Directory (CN=62a0ff2e-97b9-4513-943f-0d221bd30080,CN=Device Registration Configuration,CN=Services,CN=Configuration,DC=corp,DC=contoso,DC=com). The value returned in the keywords attribute determines if device registration is directed to Azure Device Registration Service (ADRS) or the enterprise device registration service hosted on-premises.| |C | For the managed environment, the task creates an initial authentication credential in the form of a self-signed certificate. The task write the certificate to the userCertificate attribute on the computer object in Active Directory using LDAP. |D |The computer cannot authenticate to Azure DRS until a device object representing the computer that includes the certificate on the userCertificate attribute is created in Azure Active Directory. Azure AD Connect detects an attribute change. On the next synchronization cycle, Azure AD Connect sends the userCertificate, object GUID, and computer SID to Azure DRS. Azure DRS uses the attribute information to create a device object in Azure Active Directory.| From dbec06ec12aec90925074516fdd95a9e19ec5756 Mon Sep 17 00:00:00 2001 From: RavennMSFT <37601656+RavennMSFT@users.noreply.github.com> Date: Tue, 10 Dec 2019 11:19:45 -0800 Subject: [PATCH 06/30] Update windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md Co-Authored-By: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- .../hello-how-it-works-device-registration.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md index 71c0f94576..e91ce1f65c 100644 --- a/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md +++ b/windows/security/identity-protection/hello-for-business/hello-how-it-works-device-registration.md @@ -78,7 +78,7 @@ Device Registration is a prerequisite to Windows Hello for Business provisioning | Phase | Description | | :----: | :----------- | -| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note:Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in. | +| A | The user signs in to a domain joined Windows 10 computers using domain credentials. This can be user name and password or smart card authentication. The user sign-in triggers the Automatic Device Join task. Note: the Automatic Device Join tasks is triggered on domain join as well as retried every hour. It does not solely depend on the user sign-in. | |B | The task queries Active Directory using the LDAP protocol for the keywords attribute on service connection point stored in the configuration partition in Active Directory (CN=62a0ff2e-97b9-4513-943f-0d221bd30080,CN=Device Registration Configuration,CN=Services,CN=Configuration,DC=corp,DC=contoso,DC=com). The value returned in the keywords attribute determines if device registration is directed to Azure Device Registration Service (ADRS) or the enterprise device registration service hosted on-premises.| |C | For the federated environments, the computer authenticates the enterprise device registration endpoint using Windows integrated authentication. The enterprise device registration service creates and returns a token that includes claims for the object GUID, computer SID, and domain joined state. The task submits the token and claims to Azure Active Directory where it is validated. Azure Active Directory returns an ID token to the running task. |D | The application creates TPM bound (preferred) RSA 2048 bit key-pair known as the device key (dkpub/dkpriv). The application create a certificate request using dkpub and the public key and signs the certificate request with using dkpriv. Next, the application derives second key pair from the TPM's storage root key. This is the transport key (tkpub/tkpriv).| From 788015cd3dcfde895cedc10a7ef6e1c68e0cb4f6 Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Fri, 13 Dec 2019 14:12:30 -0800 Subject: [PATCH 07/30] Store instructions, rs5, workflow, install method Removed old instructions on tap to place apps from pre rs5 Clarified not all apps need to be purchased. Added note you can use MSA while using another account. Got rid of a BLOOM reference corrected to Start Gesture Added My Library reference @scooley --- devices/hololens/holographic-store-apps.md | 18 ++++++++++++------ 1 file changed, 12 insertions(+), 6 deletions(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index 085f14c50e..f82acc721b 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -33,12 +33,18 @@ Open the Microsoft Store from the **Start** menu. Then browse for apps and games ## Install apps -To download apps, you'll need to be signed in with a Microsoft account. To buy them, you'll need a payment method associated with the Microsoft account you use on your HoloLens. To set up a payment method, go to [account.microsoft.com](https://account.microsoft.com/) and select **Payment & billing** > **Payment options** > **Add a payment option**. +To download apps, you'll need to be signed in with a Microsoft account. Some apps are free and can be downloaded right away. Apps that require a purchase require you to be signed into the Store with your Microsoft account and have a valid payment method. +>[!NOTE] +>The account you can use on Microsoft Store does not have to be the same as the account you are signed in with. If you are using a Work or School account on your HoloLens then you'll need to sign in with your personal account in the Store App to make a purchase. -1. To open the [**Start** menu](holographic-home.md), perform a [bloom](hololens1-basic-usage.md) gesture or tap your wrist. -2. Select the Store app and then tap to place this tile into your world. -3. Once the Store app opens, use the search bar to look for any desired application. -4. Select **Get** or **Install** on the application's page (a purchase may be required). +To set up a payment method, go to [account.microsoft.com](https://account.microsoft.com/) and select **Payment & billing** > **Payment options** > **Add a payment option**. + +1. To open the [**Start** menu](holographic-home.md), perform a the [Start gesture](https://docs.microsoft.com/en-us/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. +1. Select the Store app. Once the Store app opens: + 1. Use the search bar to look for any desired application. + 1. Select from one of curated categories to find essential apps or apps made specifically for HoloLens. + 1. On the top right of the Store app select the **"..."** button and select **My Library**, to view any perviously purchased apps. +1. Select **Get** or **Install** on the application's page (a purchase may be required). ## Uninstall apps @@ -46,7 +52,7 @@ There are two ways to uninstall applications. You can uninstall applications th ### Uninstall from the Start menu -On the **Start** menu or in the **All apps** list, gaze at the app. Tap and hold until the menu appears, then select **Uninstall**. +On the **Start** menu or in the **All apps** list, browse to the app. Air Tap and hold until the menu appears, then select **Uninstall**. ### Uninstall from the Microsoft Store From c3f2596ab061c5938d200dca7ce822aa3d55b5de Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Mon, 16 Dec 2019 10:31:46 -0800 Subject: [PATCH 08/30] Update holographic-store-apps.md --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index f82acc721b..662debba9d 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -39,7 +39,7 @@ To download apps, you'll need to be signed in with a Microsoft account. Some app To set up a payment method, go to [account.microsoft.com](https://account.microsoft.com/) and select **Payment & billing** > **Payment options** > **Add a payment option**. -1. To open the [**Start** menu](holographic-home.md), perform a the [Start gesture](https://docs.microsoft.com/en-us/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. +1. To open the [**Start** menu](holographic-home.md), perform a the [Start gesture](https://docs.microsoft.com/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. 1. Select the Store app. Once the Store app opens: 1. Use the search bar to look for any desired application. 1. Select from one of curated categories to find essential apps or apps made specifically for HoloLens. From ac02ba082786584b3498e17f0a68218d5ff620de Mon Sep 17 00:00:00 2001 From: Chris Genevich Date: Wed, 8 Jan 2020 08:04:19 -0800 Subject: [PATCH 09/30] Update surface-enterprise-management-mode.md Fix small copy past error --- devices/surface/surface-enterprise-management-mode.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/surface/surface-enterprise-management-mode.md b/devices/surface/surface-enterprise-management-mode.md index 81b911bb6f..19d9e8aa2f 100644 --- a/devices/surface/surface-enterprise-management-mode.md +++ b/devices/surface/surface-enterprise-management-mode.md @@ -96,7 +96,7 @@ The following list shows all the available devices you can manage in SEMM: |Enable Battery limit| Allows you to manage Battery limit functionality. If you do not configure this setting, Battery limit is enabled | | Security | Displays the Surface UEFI **Security** page. If you do not configure this setting, the Security page is displayed. | | Devices | Displays the Surface UEFI **Devices** page. If you do not configure this setting, the Devices page is displayed. | -| Boot | Displays the Surface UEFI **Boot** page. If you do not configure this setting, the DateTime page is displayed. | +| Boot | Displays the Surface UEFI **Boot** page. If you do not configure this setting, the Boot page is displayed. | | DateTime | Displays the Surface UEFI **DateTime** page. If you do not configure this setting, the DateTime page is displayed. | From 3f9423b088d55e89ace2e2c51b3530cf9acf175b Mon Sep 17 00:00:00 2001 From: NagaCSC Date: Mon, 13 Jan 2020 14:37:23 -0800 Subject: [PATCH 10/30] Pre-requisite list update for AADJ SSO - VPN solution or network infra in place to reach your on-prem DC --- .../hello-for-business/hello-hybrid-aadj-sso-base.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md index 9874fcd53a..1c88bb95cf 100644 --- a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md +++ b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md @@ -33,6 +33,7 @@ Before adding Azure Active Directory (Azure AD) joined devices to your existing - Certificate Revocation List (CRL) Distribution Point (CDP) - 2016 Domain Controllers - Domain Controller certificate +- VPN solution or network infra in place to reach your on-prem DC ### Azure Active Directory Connect synchronization Azure AD join, as well as hybrid Azure AD join devices register the user's Windows Hello for Business credential with Azure. To enable on-premises authentication, the credential must be synchronized to the on-premises Active Directory, regardless whether you are using a key or a certificate. Ensure you have Azure AD Connect installed and functioning properly. To learn more about Azure AD Connect, read [Integrate your on-premises directories with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/connect/active-directory-aadconnect). From 159aa36e327b3152939f48b455a95832099ad07a Mon Sep 17 00:00:00 2001 From: NagaCSC Date: Tue, 14 Jan 2020 07:35:59 -0800 Subject: [PATCH 11/30] Update windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md looks good to me Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- .../hello-for-business/hello-hybrid-aadj-sso-base.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md index 1c88bb95cf..c13bde0a85 100644 --- a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md +++ b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md @@ -33,7 +33,7 @@ Before adding Azure Active Directory (Azure AD) joined devices to your existing - Certificate Revocation List (CRL) Distribution Point (CDP) - 2016 Domain Controllers - Domain Controller certificate -- VPN solution or network infra in place to reach your on-prem DC +- VPN solution or network infrastructure in place to reach your on-premises domain controller ### Azure Active Directory Connect synchronization Azure AD join, as well as hybrid Azure AD join devices register the user's Windows Hello for Business credential with Azure. To enable on-premises authentication, the credential must be synchronized to the on-premises Active Directory, regardless whether you are using a key or a certificate. Ensure you have Azure AD Connect installed and functioning properly. To learn more about Azure AD Connect, read [Integrate your on-premises directories with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/connect/active-directory-aadconnect). @@ -338,4 +338,3 @@ If you plan on using certificates for on-premises single-sign on, perform the ad - From 58d2af391d8bac8ac12d53bbd9bd9654d43fad32 Mon Sep 17 00:00:00 2001 From: NagaCSC Date: Wed, 15 Jan 2020 12:39:11 -0800 Subject: [PATCH 12/30] hello-hybrid-aadj-sso updated pre-requisite as suggested --- .../hello-for-business/hello-hybrid-aadj-sso-base.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md index f4fe5b9d04..f5b585b4de 100644 --- a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md +++ b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md @@ -33,7 +33,7 @@ Before adding Azure Active Directory (Azure AD) joined devices to your existing - Certificate Revocation List (CRL) Distribution Point (CDP) - 2016 Domain Controllers - Domain Controller certificate -- VPN solution or network infrastructure in place to reach your on-premises domain controller +- Network infrastructure in place to reach your on-premises domain controller. If machines are external, This can be achieved using any VPN solution ### Azure Active Directory Connect synchronization Azure AD join, as well as hybrid Azure AD join devices register the user's Windows Hello for Business credential with Azure. To enable on-premises authentication, the credential must be synchronized to the on-premises Active Directory, regardless whether you are using a key or a certificate. Ensure you have Azure AD Connect installed and functioning properly. To learn more about Azure AD Connect, read [Integrate your on-premises directories with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/connect/active-directory-aadconnect). From 97d3adfddcdfc54057dd800af518bd69eec7d134 Mon Sep 17 00:00:00 2001 From: NagaCSC Date: Wed, 15 Jan 2020 15:35:16 -0800 Subject: [PATCH 13/30] Update windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md looks good Co-Authored-By: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- .../hello-for-business/hello-hybrid-aadj-sso-base.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md index f5b585b4de..60ec925701 100644 --- a/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md +++ b/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.md @@ -33,7 +33,7 @@ Before adding Azure Active Directory (Azure AD) joined devices to your existing - Certificate Revocation List (CRL) Distribution Point (CDP) - 2016 Domain Controllers - Domain Controller certificate -- Network infrastructure in place to reach your on-premises domain controller. If machines are external, This can be achieved using any VPN solution +- Network infrastructure in place to reach your on-premises domain controller. If the machines are external, this can be achieved using any VPN solution. ### Azure Active Directory Connect synchronization Azure AD join, as well as hybrid Azure AD join devices register the user's Windows Hello for Business credential with Azure. To enable on-premises authentication, the credential must be synchronized to the on-premises Active Directory, regardless whether you are using a key or a certificate. Ensure you have Azure AD Connect installed and functioning properly. To learn more about Azure AD Connect, read [Integrate your on-premises directories with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/connect/active-directory-aadconnect). @@ -339,4 +339,3 @@ Sign-in a workstation with access equivalent to a _domain user_. If you plan on using certificates for on-premises single-sign on, perform the additional steps in [Using Certificates for On-premises Single-sign On](hello-hybrid-aadj-sso-cert.md). - From 5d5ab1d31aacf90851ba1d1ac36a93f8c8764070 Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:00:02 -0800 Subject: [PATCH 14/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index 662debba9d..4b3b4ca35d 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -33,7 +33,7 @@ Open the Microsoft Store from the **Start** menu. Then browse for apps and games ## Install apps -To download apps, you'll need to be signed in with a Microsoft account. Some apps are free and can be downloaded right away. Apps that require a purchase require you to be signed into the Store with your Microsoft account and have a valid payment method. +To download apps, you'll need to be signed in with a Microsoft account. Some apps are free and can be downloaded right away. Apps that require a purchase require you to be signed in to the Store with your Microsoft account and have a valid payment method. >[!NOTE] >The account you can use on Microsoft Store does not have to be the same as the account you are signed in with. If you are using a Work or School account on your HoloLens then you'll need to sign in with your personal account in the Store App to make a purchase. From b08f5c8339cb40daad1b78301f23d3857301f47b Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:00:44 -0800 Subject: [PATCH 15/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index 4b3b4ca35d..3f5608e0fa 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -41,7 +41,7 @@ To set up a payment method, go to [account.microsoft.com](https://account.micros 1. To open the [**Start** menu](holographic-home.md), perform a the [Start gesture](https://docs.microsoft.com/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. 1. Select the Store app. Once the Store app opens: - 1. Use the search bar to look for any desired application. + 1. Use the search bar to look for any desired applications. 1. Select from one of curated categories to find essential apps or apps made specifically for HoloLens. 1. On the top right of the Store app select the **"..."** button and select **My Library**, to view any perviously purchased apps. 1. Select **Get** or **Install** on the application's page (a purchase may be required). From fd06f176031323ce628def96545ae8862d6c395f Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:00:57 -0800 Subject: [PATCH 16/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index 3f5608e0fa..a933994827 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -39,7 +39,7 @@ To download apps, you'll need to be signed in with a Microsoft account. Some app To set up a payment method, go to [account.microsoft.com](https://account.microsoft.com/) and select **Payment & billing** > **Payment options** > **Add a payment option**. -1. To open the [**Start** menu](holographic-home.md), perform a the [Start gesture](https://docs.microsoft.com/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. +1. To open the [**Start** menu](holographic-home.md), perform a [Start gesture](https://docs.microsoft.com/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. 1. Select the Store app. Once the Store app opens: 1. Use the search bar to look for any desired applications. 1. Select from one of curated categories to find essential apps or apps made specifically for HoloLens. From ca1f8da04d47b65c3bcf78c465c626a54ca165ce Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:01:18 -0800 Subject: [PATCH 17/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index a933994827..1cc434b348 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -43,7 +43,7 @@ To set up a payment method, go to [account.microsoft.com](https://account.micros 1. Select the Store app. Once the Store app opens: 1. Use the search bar to look for any desired applications. 1. Select from one of curated categories to find essential apps or apps made specifically for HoloLens. - 1. On the top right of the Store app select the **"..."** button and select **My Library**, to view any perviously purchased apps. + 1. On the top right of the Store app, select the **"..."** button and then select **My Library** to view any previously purchased apps. 1. Select **Get** or **Install** on the application's page (a purchase may be required). ## Uninstall apps From 398e476acfefa2b85f07178b6ad3fbe7c44008fd Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:01:39 -0800 Subject: [PATCH 18/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index 1cc434b348..a2156cbef0 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -42,7 +42,7 @@ To set up a payment method, go to [account.microsoft.com](https://account.micros 1. To open the [**Start** menu](holographic-home.md), perform a [Start gesture](https://docs.microsoft.com/hololens/hololens2-basic-usage#start-gesture) or [bloom](hololens1-basic-usage.md) gesture on HoloLens 1. 1. Select the Store app. Once the Store app opens: 1. Use the search bar to look for any desired applications. - 1. Select from one of curated categories to find essential apps or apps made specifically for HoloLens. + 1. Select essential apps or apps made specifically for HoloLens from one of the curated categories. 1. On the top right of the Store app, select the **"..."** button and then select **My Library** to view any previously purchased apps. 1. Select **Get** or **Install** on the application's page (a purchase may be required). From 74c9a3daa7444710f92e9e9a810c281d5531ca67 Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:02:55 -0800 Subject: [PATCH 19/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index a2156cbef0..fcab543566 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -34,7 +34,7 @@ Open the Microsoft Store from the **Start** menu. Then browse for apps and games ## Install apps To download apps, you'll need to be signed in with a Microsoft account. Some apps are free and can be downloaded right away. Apps that require a purchase require you to be signed in to the Store with your Microsoft account and have a valid payment method. ->[!NOTE] +> [!NOTE] >The account you can use on Microsoft Store does not have to be the same as the account you are signed in with. If you are using a Work or School account on your HoloLens then you'll need to sign in with your personal account in the Store App to make a purchase. To set up a payment method, go to [account.microsoft.com](https://account.microsoft.com/) and select **Payment & billing** > **Payment options** > **Add a payment option**. From bff640dc2fcae934d984217bd73e635488685693 Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Tue, 25 Feb 2020 13:03:42 -0800 Subject: [PATCH 20/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index fcab543566..c154c0efc2 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -35,7 +35,7 @@ Open the Microsoft Store from the **Start** menu. Then browse for apps and games To download apps, you'll need to be signed in with a Microsoft account. Some apps are free and can be downloaded right away. Apps that require a purchase require you to be signed in to the Store with your Microsoft account and have a valid payment method. > [!NOTE] ->The account you can use on Microsoft Store does not have to be the same as the account you are signed in with. If you are using a Work or School account on your HoloLens then you'll need to sign in with your personal account in the Store App to make a purchase. +> The account you use on Microsoft Store does not have to be the same as the account you are signed in with. If you are using a Work or School account on your HoloLens then you'll need to sign in with your personal account in the Store App to make a purchase. To set up a payment method, go to [account.microsoft.com](https://account.microsoft.com/) and select **Payment & billing** > **Payment options** > **Add a payment option**. From e23e41ca1db5ff7f6551c448e7560653c40670f3 Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Wed, 26 Feb 2020 08:36:23 -0800 Subject: [PATCH 21/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index c154c0efc2..9a8d59a9c7 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -52,7 +52,7 @@ There are two ways to uninstall applications. You can uninstall applications th ### Uninstall from the Start menu -On the **Start** menu or in the **All apps** list, browse to the app. Air Tap and hold until the menu appears, then select **Uninstall**. +On the **Start** menu or in the **All apps** list, browse to the app. Air tap and hold until the menu appears, then select **Uninstall**. ### Uninstall from the Microsoft Store From 2e9ed717ff191445d71ae514d4dfdbc06c8afab5 Mon Sep 17 00:00:00 2001 From: Evan Miller Date: Fri, 3 Apr 2020 11:20:57 -0700 Subject: [PATCH 22/30] Update devices/hololens/holographic-store-apps.md Co-Authored-By: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- devices/hololens/holographic-store-apps.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/holographic-store-apps.md b/devices/hololens/holographic-store-apps.md index 9a8d59a9c7..f993afcb7f 100644 --- a/devices/hololens/holographic-store-apps.md +++ b/devices/hololens/holographic-store-apps.md @@ -43,7 +43,7 @@ To set up a payment method, go to [account.microsoft.com](https://account.micros 1. Select the Store app. Once the Store app opens: 1. Use the search bar to look for any desired applications. 1. Select essential apps or apps made specifically for HoloLens from one of the curated categories. - 1. On the top right of the Store app, select the **"..."** button and then select **My Library** to view any previously purchased apps. + 1. On the top right of the Store app, select the **...** button and then select **My Library** to view any previously purchased apps. 1. Select **Get** or **Install** on the application's page (a purchase may be required). ## Uninstall apps From 533be11c0ab3b2807c5a7e82f8bf163aad3c8b28 Mon Sep 17 00:00:00 2001 From: Mark Goodman <19527097+silvermarkg@users.noreply.github.com> Date: Mon, 11 May 2020 21:33:02 +0100 Subject: [PATCH 23/30] Fixed missing word Added missing word in Acquire Dynamic Update packages section to include 'updates' instead of just 's' --- windows/deployment/update/media-dynamic-update.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deployment/update/media-dynamic-update.md b/windows/deployment/update/media-dynamic-update.md index c981469bef..8af36e4df1 100644 --- a/windows/deployment/update/media-dynamic-update.md +++ b/windows/deployment/update/media-dynamic-update.md @@ -42,7 +42,7 @@ You can obtain Dynamic Update packages from the [Microsoft Update Catalog](https ![Table with columns labeled Title, Products, Classification, Last Updated, Version, and Size and four rows listing various dynamic updates and associated KB articles](images/update-catalog.png) -The various Dynamic Update packages might not all be present in the results from a single search, so you might have to search with different keywords to find all of the s. And you'll need to check various parts of the results to be sure you've identified the needed files. This table shows in bold the key items to search for or look for in the results. For example, to find the relevant "Setup Dynamic Update," you'll have to check the detailed description for the download by selecting the link in the **Title** column of the search results. +The various Dynamic Update packages might not all be present in the results from a single search, so you might have to search with different keywords to find all of the updates. And you'll need to check various parts of the results to be sure you've identified the needed files. This table shows in bold the key items to search for or look for in the results. For example, to find the relevant "Setup Dynamic Update," you'll have to check the detailed description for the download by selecting the link in the **Title** column of the search results. |To find this Dynamic Update packages, search for or check the results here--> |Title |Product |Description (select the **Title** link to see **Details**) | From aec29d2a88bc34c0ab9824aa8846511b5bde6694 Mon Sep 17 00:00:00 2001 From: MaratMussabekov <48041687+MaratMussabekov@users.noreply.github.com> Date: Tue, 12 May 2020 09:37:09 +0500 Subject: [PATCH 24/30] Update configure-block-at-first-sight-windows-defender-antivirus.md --- ...-first-sight-windows-defender-antivirus.md | 20 ++++++++++++++++--- 1 file changed, 17 insertions(+), 3 deletions(-) diff --git a/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md b/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md index af838d196f..fb691c6dea 100644 --- a/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md +++ b/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md @@ -117,14 +117,28 @@ For a list of Windows Defender Antivirus device restrictions in Intune, see [Dev If you had to change any of the settings, you should re-deploy the Group Policy Object across your network to ensure all endpoints are covered. -### Confirm block at first sight is enabled with the Windows Security app +### Confirm block at first sight is enabled with Registry editor -You can confirm that block at first sight is enabled in your Windows security settings. +1. Start Registry Editor. -Block at first sight is automatically enabled as long as **Cloud-delivered protection** and **Automatic sample submission** are both turned on. +2. Go to **HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows Defender\Spynet**, and make sure that + + 1. **SpynetReporting** key is set to **1** + + 2. **SubmitSamplesConsent** key is set to either **1** (Send safe samples) or **3** (Send all samples) + +3. Go to **HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows Defender\Real-Time Protection**, and make sure that + + 1. **DisableIOAVProtection** key is set to **0** + + 2. **DisableRealtimeMonitoring** key is set to **0** ### Confirm Block at First Sight is enabled on individual clients +You can confirm that block at first sight is enabled on individual clients using Windows security settings. + +Block at first sight is automatically enabled as long as **Cloud-delivered protection** and **Automatic sample submission** are both turned on. + 1. Open the Windows Security app. 2. Select **Virus & threat protection**, and then, under **Virus & threat protection settings**, select **Manage Settings**. From 20b54ed6567a065ebdee3c7dbc586477edaacf60 Mon Sep 17 00:00:00 2001 From: MaratMussabekov <48041687+MaratMussabekov@users.noreply.github.com> Date: Tue, 12 May 2020 11:44:11 +0500 Subject: [PATCH 25/30] Update create-windows-firewall-rules-in-intune.md --- .../create-windows-firewall-rules-in-intune.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/security/threat-protection/windows-firewall/create-windows-firewall-rules-in-intune.md b/windows/security/threat-protection/windows-firewall/create-windows-firewall-rules-in-intune.md index 15c54f8ada..e7201d21c3 100644 --- a/windows/security/threat-protection/windows-firewall/create-windows-firewall-rules-in-intune.md +++ b/windows/security/threat-protection/windows-firewall/create-windows-firewall-rules-in-intune.md @@ -74,8 +74,8 @@ Comma separated list of local addresses covered by the rule. Valid tokens includ - \* indicates any local address. If present, this must be the only token included. - A subnet can be specified using either the subnet mask or network prefix notation. If neither a subnet mask nor a network prefix is specified, the subnet mask default is 255.255.255.255. - A valid IPv6 address. -- An IPv4 address range in the format of "start address - end address" with no spaces included. -- An IPv6 address range in the format of "start address - end address" with no spaces included. Default is Any address. +- An IPv4 address range in the format of "start address-end address" with no spaces included. +- An IPv6 address range in the format of "start address-end address" with no spaces included. Default is Any address. [Learn more](https://aka.ms/intunefirewalllocaladdressrule) @@ -93,8 +93,8 @@ List of comma separated tokens specifying the remote addresses covered by the ru - LocalSubnet indicates any local address on the local subnet. - A subnet can be specified using either the subnet mask or network prefix notation. If neither a subnet mask not a network prefix is specified, the subnet mask defaults to 255.255.255.255. - A valid IPv6 address. -- An IPv4 address range in the format of "start address - end address" with no spaces included. -- An IPv6 address range in the format of "start address - end address" with no spaces included. +- An IPv4 address range in the format of "start address-end address" with no spaces included. +- An IPv6 address range in the format of "start address-end address" with no spaces included. Default is Any address. From 20d816017010b11e6b4fb03282de75c1cf2d6664 Mon Sep 17 00:00:00 2001 From: MSFTandrelom <54631941+MSFTandrelom@users.noreply.github.com> Date: Tue, 12 May 2020 13:47:43 +0300 Subject: [PATCH 26/30] Update vpn-office-365-optimization.md Fixing bug 6506 --- .../vpn/vpn-office-365-optimization.md | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/windows/security/identity-protection/vpn/vpn-office-365-optimization.md b/windows/security/identity-protection/vpn/vpn-office-365-optimization.md index 66699d9e0b..d067b5a21d 100644 --- a/windows/security/identity-protection/vpn/vpn-office-365-optimization.md +++ b/windows/security/identity-protection/vpn/vpn-office-365-optimization.md @@ -239,12 +239,12 @@ if ($VPNprofilefile -ne "" -and $FileExtension -eq ".ps1") # Extract the Profile XML from the ps1 file # - $regex = '(?sm).*^*.\r?\n(.*?)\r?\n.*' + $regex = '(?sm).*^*.\r?\n(.*?)\r?\n.*' # Create xml format variable to compare with the optimize list # $xmlbody=(Get-Content -Raw $VPNprofilefile) -replace $regex, '$1' - [xml]$VPNprofilexml=""+$xmlbody+"" + [xml]$VPNprofilexml=""+$xmlbody+"" # Loop through each address found in VPNPROFILE XML section # foreach ($Route in $VPNprofilexml.VPNProfile.Route) @@ -349,7 +349,7 @@ if ($VPNprofilefile -ne "" -and $FileExtension -eq ".xml") $In_VPN_Only=$null # Variable to hold IP Addresses that only appear in the VPN profile XML file # # Extract the Profile XML from the XML file # - $regex = '(?sm).*^*.\r?\n(.*?)\r?\n.*' + $regex = '(?sm).*^*.\r?\n(.*?)\r?\n.*' # Create xml format variable to compare with optimize list # $xmlbody=(Get-Content -Raw $VPNprofilefile) -replace $regex, '$1' @@ -367,7 +367,7 @@ if ($VPNprofilefile -ne "" -and $FileExtension -eq ".xml") # In VPN list only # $In_VPN_only =$ARRVPN | Where {$optimizeIpsv4 -NotContains $_} - [array]$Inpfile = get-content $VPNprofilefile + [System.Collections.ArrayList]$Inpfile = get-content $VPNprofilefile if ($In_Opt_Only.Count -gt 0 ) { @@ -377,10 +377,10 @@ if ($VPNprofilefile -ne "" -and $FileExtension -eq ".xml") { # Add the missing IP address(es) # $IPInfo=$NewIP.Split("/") - $inspoint = $Inpfile[0].IndexOf(""+$IPInfo[0].Trim()+""+""+$IPInfo[1].Trim()+""+"true"+"" + $routes += "`n"+"`t
"+$IPInfo[0].Trim()+"
`n"+"`t"+$IPInfo[1].Trim()+"`n"+"`ttrue`n"+"
`n" } - $Inpfile = $Inpfile[0].Insert($inspoint,$routes) + $inspoint = $Inpfile.IndexOf("") + $Inpfile.Insert($inspoint,$routes) # Update filename and write new XML file # $NewFileName=(Get-Item $VPNprofilefile).Basename + "-NEW.xml" From 9c30125dd869402edebf91c4e10dcbe1c7513d27 Mon Sep 17 00:00:00 2001 From: MaratMussabekov <48041687+MaratMussabekov@users.noreply.github.com> Date: Tue, 12 May 2020 18:17:11 +0500 Subject: [PATCH 27/30] Delete secconmgmt_baseline_intuneprofile2.png --- .../secconmgmt_baseline_intuneprofile2.png | Bin 38644 -> 0 bytes 1 file changed, 0 insertions(+), 0 deletions(-) delete mode 100644 windows/security/threat-protection/microsoft-defender-atp/images/secconmgmt_baseline_intuneprofile2.png diff --git a/windows/security/threat-protection/microsoft-defender-atp/images/secconmgmt_baseline_intuneprofile2.png b/windows/security/threat-protection/microsoft-defender-atp/images/secconmgmt_baseline_intuneprofile2.png deleted file mode 100644 index 4b1576ec238e64494d231e2ab020696a6ed1e6f4..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 38644 zcmdqJ1yog0)Gm7HE-7gcrCYi&2$4oXq(izp51j&{2ugRSbb|;8NXMbOyF1=G`v3pC zcZ@sk_{V+Yjq%1i>Oj_Bd+)W^nrqH)e)HQWOj%I|2a_BV0)gPj$-Yp9K#+VP5X5eD zRM4_Yq#y%+VA#pNbA&)}f5HDDd}YO@0F7u)atbfemeHtCsDvGF))W6Wz0`D)a&|Ja zb%5lT{E-Ds*iNA7g^8n)gSnlPxvdR^5QB~$v}3~CpWE8GJD8iAIYEl>{s@Cs+`p|3 zCI;}Xv`*&MCJ?@JJPdFI1Aau!_JfnFfrAM|$L=299qaGK%^i)b3_w>0NKI>HG-yVL zH)|L;*qGaxLRu--LO>hZzw@0Pj7%V>_W|4g+3mTlwY7_{p4zd_a}swjzN7){a3-cFPpQZ2RpkF*KK~K8*WrFD-8Nk-B<4YY79&(=sO7@TW-z5A}VZ z*su=gzAyx#$;OoEE>ZoG<@GD=)a`?m0r2ygvvU>7i@%?ffc4$gRlYfM+DGtD26rpu zQz-oN`#Bfn@!z&1d~8VA-!@TXq*fnxcJ_^(ofqorqi&4Zdi2zDgV;sm3t^UBBJ89E zIHkAE2tkJ`7Z(x%T_W6>xkuPG9`#t8i5wjky9cCdjn6|E>APr4Sq2tzay<_Q&o(uM zqgJhpqM8cM3+z|9p_J}cEFYq_5@rng_PrqAjbhfnn%a$w>|S8%UW}l`DK)I#q5Mw7 zcNa!~=}x0_WaMV}wSoKW()>ju>Www_(Tp+A;>qU7pc!vwV-8Jl0Zi4tqqEevP`7oS zhNFv^)$cq~$(GZ=@0%Xw>*?$0Fr_|qez_QnIl>Ro=kH$*8OCdRg*c-FAR@%E*f z7}?B*p9j6{1{WsxH3cnijoRw;d2PRmVs2Zsmvm9s=@nnh;@yk9UA0ogK5OAQI30AM zN(ue=v-#fE%rEKHDvH!CQu*IWiymr4E)YGxs-+9gGt zyKm@bwj*hm)dccqDEU{Gj7NlzvYZ+?SgTE@SPG#HGxi($q=C?A>0|ufrL;zMe0AUW zcv9({$}`*TO0Ji4*hw|UBthx!NIU&4@-_~iqr;EH>sPuCF5*P4w?~wF`cNA79`HsF zy=>0SMcZ#Y#-wR*zG*njv_m+X^JybpT)-~!}2_fX5 zM;d|iYn9~dSMu`rOq|5X=td4n_(KChjRRIU{9DjP9y2;FW<`Cvnch$B>bn&#@bsg@eWgVU{#eDO_Po4hg(>nDmmuje^O z{#e;TF*CDTLFf>{gGl2G$6d8fuwL){o|2hN7ZeY>IYi~7Z8}it+ zPnrU<&0k}`pOWy_xc-Ed&%F&o3dZ!G|g1#!LqEAvrZC( z<-}yXEiAWRmTtUQickhaSqf*JNxf9&_qXvNJNKH2ayfif!YO&SegEtzp_V{CGaeIP zz2K0YbUaov=;fdV6(tr6G4ku8>!**%-C4fA3L3gb$44ecMq5sMI2WZ8y-AQXbnjk- zFt#M9gJkn3ucPGrZcO4%Zz5YQeQNEx^#{&HWG!WbeThVc=|E?)>s*-iboJuSWQEND z+O%~NVE__d5QIh`bHb#)X!2NQhko0qITz?A}= zTg1nGx9)zh*zC8^s4VtI4`>}rlAC^6=XYn{W6i5K*|b-|CAwTG+7XdpKv|971_;z|u@65%z zLPC*hz0Ls|+T}az^LaJM4O_EU8i%@?ofWsYYS-Nf)8U>G@to3}##jO`wjezKO)79BYyKQc^iTH-Qqc?1cO77I;cc=1~=3OPT$+ZrI}#d=rhQ!$uH(X@HM1AG4YzeO2A5?*17Nu_t-m`Rd*D-3M@3Qy zEGF4fG@f@tc4rhmJmHzN+tm_ndTU8VXw>_ zC@_t}1t+W2gVY8;1Pz6*K@;U`0eOQB`cDN;B)z#?TXf7GYC#%fyw|Mk(`RZ;SOUl< znVQZ0J4=4c3?k?PJ5xbcFSWvp=dE)~=YlBwZGQH;kqLxtv-QXIF+zNIzJ2CgN8Kr) zw)wsiLgT|QVd|u@APA|P8w{O~s7Y?0<+gAl{v)l?X64mTMiFl-!udX!3`&rr*)^N- zb5?1yT=(ww)DP=zTP8dHxK{kgsU7XzQS7xqI?LBnXfqSeYNu$Ab&R;< zv%`qZ4_@j^EIJ0Vx*GxUO4wGGrxFcxY}i5LYdNKEiPQr5zeE#)8}t2RU7_y;i=nmT z&)Qm)7Z!5pgv247B4oKN`5mh!eizje_viUqcI|r8Iwdfh7R&-aFMRdZ7#noU51EAv z4<1L1V6i-&e@Zbww}iy@HnUJNz}YcpVZ4LnW;OK(#X2yC#0N;bpL*Xv{7hP4SM$Yt zPqcJOth7)=H`mOj*Z}gR&Wt)|gn1Mp6v-ZPrF>Z=$l0v&a_K_m@G$y=pXKEHT zI!=@DcI(Td%(J_j#K@AW<{#F=(a|f{&o_QuwNy{Xmm}hg_mSOvdpJR2;!cQ6tjodm zu12ApT4Qxp^hfGeCnq(@i2m$(ruU9Hlsx<;O%)T;DN^!nSByg4P7AZfCb?aJXt5nXvbXBIsRevg~jW*8I-3oI~h$yZnsS%lK12MURmgW}uSrVYYg()me*GB2_Zs z&iT5#m(ycN4Z~?_sd#zQrYjM;h@dpe*JZ~ayVb<6pU-{wbJRJNxHdM&Ywbn3bvIO- zYuNkFv*E60Z`Iwa1HHU@et#-oo$lCW7hPUJ zDIQU#O#776{;6*Yh>K>fbuPEM3l>KodBbE|ru0Q*y5w!4{k-@2;wel|Mn`9M;g|>- z8ejS@(zy889N8&v!e!WRij{L^dVjvUy|wZsVWbV-5C`A1r;}cyBy@n_7u0 zu-ih)nQJ3m{wl&5O<@AcX{T@}_wDt-qj%ZQoZB3-Ft3Y85)=(j_j=3fCc5izIq6T^ zzYbSkLX|p>{O^2KAkBY-!@e>QzD9#d6&6Uh9jV`l-5cMZFzk?C<-$tZrAB;aB0S6W zW~jeH(EY7+mhQ(_(XX#-)>kZcnyroxdLB#M96TKo&um0&^DmOvT5NfHXWk+2uix}( zyMN(4#AUbfo|OmPyGenDDl|+0VMk`TH%uddqdG zAJ0j{Q(P#)c*$^@XR>c>mB&S?*sNZ#ddcxCSk&w@F5Rz@y_!$tl!Oh5X7 zhvW=n%HJInwU66aDLAOL7KgIbEd0(#h$S%5pp01F#T(>?jJV;$kp@o$=6k|`7p~U^>@80osPfp z1G-nf*5VyGvSpEAu#C}ZlG1Z%L~QRjqRJFd!VnS97r(5d=JZ|MdS5J^KF{0J+vEFj zl83uWPdI%jL8fJXx8hlibUP9ul|nm!^cyxNQ34e@e|#Q2q8lwzD&)^Hj(F5Q@bdnU z1lfS-{WnbCg&=FZE`wRC%LB)Y)8yoFEP*1@0!^t_$ybP6wjLBG#E75iG?k=>-ALzA z5b}0gXZXH`t6PcEODY%5bARa$B-QgG(9pI=v8i1|t*KE_&XO6$^lls{nDDD$oefD!ogxHzp+kf9aH;TzdG58O9>V%I@zn?eHui(_fFDG^j}av1#39NpgYIFqNi9j2ZjgHz)>oeABEheei|Ag7LkFv+XwbdBB{X zb!~^R^^urbI`jhDOTwy^ujcj3A*JUKjjmtn?j9zq3T2ae5MH$=zY3&f$~aOwqU{vk zMVRZ`pXYD%m+RlTb@ovcahy!NuYQCc9pQfMLV-K~Aj}j60d28%CRunoBJe_aV&6gP zN_L%8V?8%ZUfJiZZQuN+6ch9jIXOE10#2XRrRcc#g`XS84U?~4UB$0H({)vjvnF@M;Y zw@>}xFG^%j>0L1)`eAUiJT-JG9rt$H@syWFdnDBdVf|oRB=NwXw~59EE1P_CVECivBB>!QfF$V=E18XUk95>{rO?-S5UOGzuF2_bt%n z$oG5YO{hZS)6)?ey6z|h1O%E@J;@O-q2zem>7<{jR^HsZOj(uELiDV@A*JFRZStS3 zpG%2ucn1_wTK{@=m_Xadsk_|L8Z0EP%&|s<+@|u%s>f!>q&7!_yJz*Rlu0VHvDu7Q z_F@ToJ!0l){iTnw1s8oBr-O1e*l?K{0r!jS3(`mxJO~PUIAN@ywvRu7;`u@)t$y0` zSA>cwXKlrf$msLasd-6IQr`}XlNmyxmDq5BG%(mzd>cvY>X+iRc^IyAkomq%JVAUr7%swKS0Sq5MmekD=%X zoo6zXGrZn<>uycBXN9!$cuP1@Y+MhrcKrel)jl~FQoDyBqubA`qNS^S_a4)!eDdm(QI z!{4{vlSK$qzX`%|jAei@Aj()#SH6iYPuwCQ@xjm+N z;2V@ah}kMynZEJKw>^UDp4Lnr`;I{&Va4YF4bsh8ei$L6k~QEvz8EyxJc9w@r{3sr z?6t}j3)OQM3+`>+e_1Mhb9dLuhk(@Oaj$BZb}l5)%MojGeo}Ms$lyt(zwb!+>KW%0 zf8N-p{l!$TU5%4ZJiF4&`cKKp*lO2hgp(;-CIX!mb^pE~i!6zuP+wRgMxjb(!P-HLIGC)Xgn-YY!y@iyDo6m{Mrdhp*?Y%T%Wea4}|_6hpMO#lOBY*dJ}6+Yr8QJL2KU~z2HaFL^Z9rK^qS&Dvo9rx$>$MuP@OeC*INRO?zxY zJE|M(eLnZt#VXz7VW`<{FNvE_Q(1gIOV2cFRe5J$l^PiC@mOrgFYu#$(dI)diQagz zQ64&!$?-g{&k9;y`;vmw)%{knC`!{QXwvZ=%?DcxOME6R7|+!6tlSwM|5CEIOiWBj zz$YXOn6_>44t4+f(bEO8ZK@ZN>@jI~t0-ElW;-k9Yv}n!V=kIBPJ$^p6K!p1k?TR) z&>2+XqQwp2=$OUWgpQ1LABxaRBf23?jJ5`h5NR?Ui<-+jf^{?oPYxYB7HJ#-fu!UkV3Ww*#Kuj$AE{ zzzk!oM4*iXx<|Y{N17EZxT*Z=`qfr9x7!~UCm)+`qkLBLKbRQ5I|WzHt#MoA7I2iW zU_m}Fweg2-y|scq#wDw`K2BS})_tEwt!16_?D3C`6QtEViKdXZ@1XWBDH<_uXM77% zleO2dcfHS~!wGanSPycOArF2Yn)_qW)P7I!6Xn6(`H}^Bykmtp-cg@)KJ~uwux$%- zhBkXd>n-nj@G=r}vTm(})J|RlajB>iDuv=XQ~_OPzW^UX*DlVGWUs5+zt}dWaPg%Q zN6r3s^;w%AmdKg$=h2DgeacTuoptogBu#mKu<`J_H4UGO6F$gkHDSHD#OBGMpIj{Z z*vDm%yY2FxLc!H!mWnR-P6Qv?Oa()49hkuQMz&&m14yeSczQkhiG>>PYCWyV(%voL zSy{{YS2#}7uF?z5;R$#l-H6LoH{#VFWSZ|;@2zxyDR)?Xb_0#oOX<5r?_m z;RoB3d|8ev8F`D{J&KCHyImGA)hI{Vmcey5!NUi0`|KG%ctE?ul5) z$~sG#(Iy)<+nUx+9+Px%JC%>b-Y@bz^;Eo~fysVJo|J77U%mVfQdPPs&FOJj#-bYK zNb;unT%UeXTzYdxdC)7k+SiTOFLbj-np}J8ye^;$ z$`lV~S!G94T4~q@j_ajf&>JF-LLMM6@fdnLpn)0$==^y5NFH7QZz*TwI#$rO?;w_a{hG3HB@J|%uCWbi z({D`?^X#;0qTlQw)kB7?tggycK|PwNEvm@LBR`0Kk^Xn#!Ed9G6bUG`#AUaV-Nk_c zxGQ=`M+X?qM1w0Q8wnOB78U^s2|tNk%+7QT-sR<`nS}-U$Z1sY=18vmeOE_En?Bb< zqHQx-7t!Cj9eTmbz~?LCx)-RJ+n(_&~iMgbfrJ@W64RAsJa&S-Y#7h0Ejhn8d`wZwz#F2sGX&F}#tq=)e2> zQT2;4h;j+Pe*H?v&aS|Huiy7V{?)6j%~Ovi!@J5#-Xsa=++wAPiHRyB$I+>&i3#1K zM~MEkpmv7%?%g}pE{>&}>$6=X2%Anl5oi_=&?w(&!!{N9YhW8od|Q0J;AAfHNaez@ z=N_GBxGh|BkkiO4qpLEF%P2S^?|PLFN`tC$&n!T zP)XcwDyit`MBdzZ&3GO64fBFCE_Nyg%53Mw&3MU+^jdUd=2ljWA+68x!~)C8xOOJW zk$@$DtHO&|s0!D+HS@R-U=?jJJ!quByceNxa=$^vpN}80H=KkUPAMX#;mh@fLE$HS zqEb_%!RQta7TZIkqNEiSab0#M5Rw%`{``5Z?Xj6%yOv-%(?1_Gq4;+h>VIoWzq7Y5 zNAZ2~IrlW%c8wC8p6Fd3DtDQR{q^)RRkPePMeX5qAm^;Fp=` zNs-Ph&l|IlH!{kct>+`}OPj`M{b4=LZ|(+KUKYQ75789AIe6Y+uBNI=v^{Lb>(X1M z$rcADMyEWPB%R z%fH>)VLF=Vd$%DYfvAtea^fMjw6rvnpj0@<(kvh#fKTrvf4vijcqTPOF@YC@nVA{BtEoLU(hXqx-2r)hi2@?Yibc#KUKeFV+N*18 z^~8|iz(7bDYGKLvVt8gk|JIg8%^ET69&n!1k*ut&NczPFjmq@p$$z)F(;?XxhO}tW zBXr0@pTPVJEvG!tqrG-Vo31#ZUuaWP-Y~=@r*)_``=H}+Z+tk0- zAqcVqQoXazGK6c~uSvbOe!ogD{@ zgzX`3WX4xk4ft>H9Uh(X{rh*-r-~Z7UWYF`t~x54F4qz@E6oV*4nibqzXrE`{LiI+ z`GL(dX=u|a4(yWrTzN>`%LtNpVDjnm*A-2h9K#(P9Cp?Yd|bc%rxt*djV-p5M$AKf zi%JbxIXIqW(&LFxrCHPz5H9A_We><%GH>2PGX}6!(V0SJjqyBY6kI0eyI}FP| zx<2|Bq|HvsF_``alK(NJ|9@rZ|BukZ|M7fzHWDs;Os_!Qon0R?uz4m^Ljb|wD3nf9 z67=_CqU1@k?*{SQ&Ur*A{PX@eCzvw?hnz^)4RC5Y#SJe?qVhw5+sD%ZX+QbYj`_*VNgX6{R4y>?ZenPv(et%p?n#LxN zh21eU+frQ!;vX@Vlau^GqcbVvP|V{Tgt;QL9E^S|{&syXpiV+W%u1At=y-$@u)Dhp ze-y3a;8z{b#9}I|tCxVcLdU`R>JPECwPk*2Wo;caY1Nq}_XVGbhKvd811ML;L31UnWlo8UveDf(lyJFMch2l2-S*<)Rp3g|% z_52mA*ES{j9ZKeFyY1TwAw<0WqnKNv>8tpK#>1nL8(Qz%-DdPnHiOO#+_+6&(#=iq z=g*(oik4gt2Zx6I;8BQ{R{x`_Y)O)sCyBSWH!yqO($dnA&HDO!JK%ONuC5;O@Hk+r z$p8zYNP;^|{h2D!%-k>+f6=UlKhV>ccn^dDlQzD}F37L9Au_kET9b2MK~2OM13-;e(G?cvGkX?k6qI~YHG zn=wzD8LweaEHg)d1Oy*hs$i4Y@-!^e%u3-K7j12Bd#KBgZN)q748 zkd_<&K9&yAjXH8f)87yc3iTz!&2<;^=Il>W)-~p*YB16?Cl;f+M_s#Dk05S&?w@$t9l z{`wl3c1yo7yskELA->FNIRI47+RTB6933CesHhk*A*{&Ac+_#8m6b&xD}?YV0ZG`i zzp$(fA6WeF-@lcy&kqm%fY}3_4^{|GXCQ`NMxQ^i+_-zNl%~2D!I!nP@yI`J*<4FY zD@`>Y|G@)8fxRG7-A{KdTLpzXXG35|*j=5NBcq^z-8-;&Brh)yDx*a094CUsg@w;w zzC`)Zmk_kEv4N#ULNL@}_G}d5@+}hm-1YwPjDdxU7v6ESbjaj}L&~MZnBhpdNZIBD z)gVV=6l{cZ=Ytz)V0aDaz)r>1>E7na^~D5!D?Q>6_+-AuJ!&INO{z|m#%DV?-II!l zh^qv7i9hYa)plt}hhdEP*w`3-H9U_0?(X*MFl;M$QwY+}PQHr~iz+5&=9uRF*#_62 zC@OVzb-#OhRIwW#4(~>llyHPl`D?pOnoQK%)7v!c^20Y6qheASxDhfkD(X)wmpP*P zygc-Z4}H&6RUZHVicdii0k$2%Y%mtc=Xd=_BcyC?LDCa3LY_{@sJH;+G>YqZ7#QUZ zo36jicwb##JUgHL3i$CMRH(DFGZQ;IRlIZJYlaYsA7I%KA^bKop+Kr3j6K+~>{K>2 zH!-2PDfp&vOtnm0duV7#_SLJSjfMT+G4y!_1?2n2_(Ou*?yweHz(%ZDR7o&}cFp@7?#lHK|kzq#^}zs>9P$XAh%y8X9O45)vIa3xB>p z6}t+yd;I-1LoS~%#BOJTJHE*q(|=){m5!X894p#2nYL97?7`+kXkd}+=oC@SlT#Cu9JC-78Z=$ zn#{14IO}i)Zl(va7X8F6oX&Xbnwon8a?^GAb*}DK&z6}kkGVHJmu3%ZJ=#}syJjn$ zF*x+dLSQ53&l;@id3AOr`WGWbBw}(16GQgy+hI(e4XWfmT_qF*6?QA0wNJnMEl6HN zluugk3#E-3$nfR`XBXXUOT{0Gut9bbEyJqh0>(PO#>VPz4rdRa1DMAwNtEbHLP{z> z0CCpP(`|Sr*Vrf;3og`` zz&CsZk>xWwI^2ep%DA{xk2-->eg=}HVS3wemYgxea(Ggyl`1>esL(97BzSoi-fJ(N z5*Hgwlt13juNM&!5%cX^o>^2PNZLqs-4G}QY@ELDwVefc>4kxe`|vk?wCo5R-inC4 zCkMd+pOkdnsUf&9H@9muauw`t|Fbg}Z2*%)!@}$ZBU4jp5)vp=NkL@P=lQOzp|Q@p zL6{g828y=aj%%+WXMMvf3d2C=M*u87A%WbS{Ib!P5AvX)_x$+SQBy?q&6^<53>ly5 z0TDpkef6u$W_Wn`&zU+$DvtNXZ`-Z-=^s6Mrq$9Yty27!UR-=`@k|e0L&{H6jhKuq z%yGS6NGG_ZuGf8!2aJXH|VB6iLA#f`d`b z^}?>-HFGX4FQ>mP%yu3~;FBlkEYVA0n9lil^-7l$*zr4sJd7i&mwgoQmCt@D530r-s6)EQ3zRHdJ{w>5eUZNSVl+?Pd%JCja z>3&Hq5KSSb&jtZ?^PqHR_mwD!F)2|{q_!A8)df_Dsp7+|wR8b%oku8MRri7+pCxG8 zsTyozJB1u>yv62fj|pcgox>_A?cFA)zYdrEYLK~;mS0-(epNW1_vI%MF!t|FAP z`2rDaeLJDjhgpCM$amkkyS@I)l-O*K7Z1BZhTS4M5F@1ne*SzGBBd%PhcP@dlD)b= z-=aqlSo<8i1Q0tQaD4n(#_ZhM+6nVP26X>e-G~l59OLk z;?Nvm3yF?03T%Z11UL(am&!e!b|3EB<7;PUeG zV-lF+;^Q*`R7jBE;u14Cs7LM`Ng ztfHbae1Vl;XWub)J==V>#aiRv-{xUYeEd{cm>dvgZEbDg4A%YCrw#kfYP`%&Ye4=Q zzPZvCo0pOCY=~E-6vo;K8y%Ismb2<-RivS$ESlJtiK3L!*H7bZ27@UV!@$I$Di|8~*5ziq?n0^Mz9YTZ*5F)N=QKN*gK^TCw2@oY-QKrN_sVb=izvvh4nR;} zUeQA@J%?-Wy$*#p?|U`0EO{*M?G+31pQc!R?F?I9Wf2#P1n7XJ69}md^GpL}dl7vL z1+>Lks^ECiNJ^>ncJF4NlVWgUJOH+5H``E92g6$QYlkxLj~BlO=9HO-!NSDU8bu{S zG}3K3@QYm3wehf%B77Clj&zKSroT611q>8kzg8c$&;`tkO)jH=04X3)!Y={81E<+K z6!fK}{7&u@_$+s9@L$I3dgL1>ed{+(aYuy{1ng#phL2PMKQ(ZH6H;*t_xBCEpKSv) z-!tU!0raMBaSu694DPn=TtT%AW)epuA|?)k!?M0w0PU@;icYp`w2C`HJk6$XxGcS0 zx<4`9HmIikG)Hm3TWNYEP=q6>~vh;n3V%6r7sEjpv?t>Khpu8NSw1T}o_MT`Vpx z9&RGi6HrjVf{cd7YGF-&2i%DdD*GN2Rd)@a#-lDf(JWY1$zd!(2fD2RKe;b@f2=ksP_} zKSPHP!Rf%eHqfB_^4?;i(Wd$Wu=lVJel8(YogneENbfXouA4K%dkLPZe{x^BQrBwOCZL& zY=MpTM>cHRe%2X=Bc6_R^dT~%sEBQ4eO-PYu$(ixDVeP@nL}WkDw3N{H!9DKs@fc{ z_2re6#Q7-1!+bzT)?swbfNrcsD~Zw3(OT>cz$_|jYqNpKb~em1*E&5%NiApx>58U7 z)89pLx;$FNU3Wd7%&K!-H{6@4V`5=>_T~*SFdmGG$sJy|lfy%M!PnI4wV0v^mVGge zn+wX5<67a{F5`3|Oyc6ya9^aN5;KyMOAiP629O%#?g!?{(Cg`WyS*8qn=a^0$gC4c zLN~S@=d!3C)^b-Be}76Isrpn_X4+%*tHvvVHNy(6_Y7aU7kykRldF$)(5G)%@aCw# zuJ-pUhO~ufwzJ>m8B8O)KMpgQpMLKyqN1f0UfO(x*}BlRsoxdRSZArA5V_Q7!Sj9R zNZ}9QI?+LX`6o$8ZR_henQ51?n_I2=^b|04;OW4T(Xla*^>%DN{SC?DG36yshi#+n z8t1_iB3(h2FD3m?s{4G=de;GbXjtxkM@F9!F&&5w3Gkvtp%QATq3OaT+|BbB&s=~29=&d#BXk}=a5o_vCtABN}$+CPlyfajpuarc*?xByZh49QzYm0 z_az5mp(?H7T0d8pr~4ZkP8tZAg1U1GcXp}81gUbLUG*e1_oJ&fiEW?t_V(JZ{EkuC zyj0CrZR_en18%_OT4{ypfUv5ns_xGK@EsutJ0NKs92}%wEv~R8UKerM`F8RVrq97! zOYuh*Z3Sd3s$>KK3qu<#zXt~J;8#e#`W@hH>fz}Lj&X1FF24lGuLE2}Syz{1%ti=n z3Bi&*&Q0e>@wdCqRyKkN-aVm>po zzSsv!KBG8_J{rtWGsExr3X<)&nFK2$=9-*N5@TLOQq5n2Psqb=p%>)7e1ew6`;vCX zzC<_Pb+@&D69ndFG$jnXha2Yc3NipUsj4a2Q+3V5mM^Z6q@LLsL$tPMZMXP{o{ma> zD#hH@3AnegE^J>3k!Qp}cOF`QW?(=U$DtDrswYgr5d)QA^r(}Qli_KyJ5DB#K_OoH zu(<{fm5Mb%yl@gujumgxwbiivQ267As!E~Rv^H@Wp3jS#Sr-aW;>-OV4V(hV+p!Df zvTn#4;dL^;T-O=<5S`{J2j2d7^=OXM)-`kz5_&_wM)~JgmwCzi%3yro0P@aLXUV0i zt2N{$C!nO%PrkGjq?st9o=ecXynQ^RFF@`(4yM* z_4PeZf$4M6K7MR0JCM=Y(IGc**_R|l2*$#pXG+`5|8oqFBY^75;^Lxebj8wnP7cGj zzBK}z0szq#*Vl8+qV@`2*S@Nmw0euYdbBq5$o)Iu!5)tBD83-<4a`G8_T4nVI@q1` zK6v1TPv!Cb{qbm3lBAjj`z%jXzAVjhu(!7#+;j@R`E))bq<*xP+A7)1 zz`&4ER;C zjBH>JKuZ48iofB;L>#n&>_~0q;5YP^#FBJHp?8Jq2S6usEjc0ubp)xbmB|`6dR7Tc zsdGaWW)@XiTa8jhn`Ty4v1>TExNk>eJG#2$`zShAdn^|~ewCbKnFSmVJufejbS42n z5FH9!XkooBXDRYB<}Nik-rb*{ zgd0t~@u`313JQS$9Ws1nESJ$Asx%*gXAB@V`~puWVbdMITHx|El*7i~B+oT8Gq0|Y zIyd3okL%v-HC`fKTN^6|#IiIsH!(T`9C`Ya#|PJp^KCMIU*uE`Oweo!Mu$H1_^Y*f(G zqrpZ+dd)z{0OSZ8#~hh2y~J8yxaTgo<*tLYdbp5DyJ;%Dsfh|Oyi!t99G3T;@*uW@ zb8JJC%`7bg0Kzmg+equ$1Vu6f{zPu`;VgR*#jsG($-sQDLAdVC(a$1&ZLaZndAdma z1nzPpGtT2;XM;bZ-Rgy!2Guh!#$_3`x2^KuloPr341fA{w;@KsuG8w;DOld%HNNpa zINS?DLGIYEOLeyqs`+ z{6+YZJF#zLYYYD31z;g(O5Tvk1FPfX_x`;QTxUP~%I2yL)?a zDOgk%eKZ6Fkx3YDkeFaI&Ztx$kfs_Uhvnyx8run0;PnvXpEtQtj+l(i!Ee*D3Avm! z2Zu4-3VjD5w2zb}-DuNN+|J)AcIzQ>k{6SH^5mJ0Z$-+S9$8m*c5%rlER?VRPJ}Fl z$pDHXvmWjjW)uVD0@I|j(I1pjpO3*{A=TCVCnqPZfc6G;2v8mI@$mtV^ITc^Q|~!i z)D!sCc4&>5{?Zk5#ynE^$jk?TUP;6UbbSnCV%dKb>E#s9ZTlndOT zh}IXIWYHVX%37G=HNe9za>;*%Gd%9CQa?fWqZKoblz+9enP2DsrCi}h_**l4^gq27 z{GVsG{qJ8M{(rmM$9E8*9H2w@KN;FSh4_NV+F>V!pEhPeg-a>{r+s^R9E6(zyh_lE zO-uyhn!kxzWp+-^BLM-JO>L%A_he4n(2sw5Ack;m4B)2Nt8Hd6fzJZG#nO_Y*X=1R z-29h4NdyW|iO9Zw9otL_82KkpUS6fd$A^8Qmwiny7_ zIZ*US;R8@!BnyKx9j$z(lh(kCoKhfw=p2~J7mh7O3d}u>{HGuyhz#d8M=TiG1fwi*I~$0*c_%D0upAi+ zZUJfyhJcgA?Sh_7n%3^sZ=>q;13so4dha8C{ZBwd8VM$8d1)!j^pckx2UH|>b7Caq zYuu05R21N1q)M&g_kKCLr8V37((3Qt<)hpD$K?Lt_Qv@u8R+gc8$YU}=j6l#(8z`F zGl*>A{o2140M{v*IW)m8Lz(*h`zBY}KeJ0<>Rc7`g|nm1&ZllgS`SD`Lz0pxjZI9L zQ_dTfqeMQXrb?`=&f0fT0a+7e_v3%X(a1a?R|is_9gAxqUh$LXY;vm95Q9q~G6B>g zIC#Rq@aXB&k=5gH2n?P7-fS`EaLW z*?+G(Z}?i+kIZ&J;$9T!bRZBqIyyI?>XNb65l+V4Z@Cwzc3be1%JtqZt~mgj6n&7} zYS!4y=4G2d-kqr|xSQvci17NR!w&tm!pQ}HVaG3Y>3jI(l>=~5%d?}yMb3_6b6H5 zAujEJrWmz270e3dKqV}|*f?D7I-E33HJGh;1}ZaY7Z-k;=F1O_M?I_nIZ=-Dynp}x zFq7t1_KE|QCo{Xcdc0V_DkB3CBtcYTmDn=!@)3`2i;IgxBO|H)so`RZ&*z~uz@=T> z91jq;x7?n+x0)zJ05fnWnEjEV9)z-s!!DZTy@q{hIBCenz<_EAE9ua?ztRBuFrVMO zAH%}_s=q*5*Nzcf?@2+IpDRb=H}54tnpMpT7gJ+|bliIAD=tfU25k@)Q7B;^CjC0}x0_)0vhR(6YJR9Ci%>@c<~^83Ee32;;E` zAp^w9$_lR5B5q4H>-Cm&>j(#swb+g z6N!F@O3~;Sld*Dg#&6AnNY#)Sngpxe@e z-tsvKQ-M-6C4V1LqHQ?Xl;u{FJdknI#g!^e@YpU=3V?Q8>rZCIiAQ_wke!_kG>oW_ zhBW!+Ik2&F2MAL{TotuYA@L*Pz`EUl@9;0R1O;7%G=E zK>QfPhQc?BYv!KG%A$juK8>m;^mx-rm{QQL)g%K=+s?p6&?c5vIMRO^t7K4S!Aj# zBS<+rK{X=+RA@A|Akw-<=$c4$<==CYLiN3;^caZI; zeiFYH2EGWtoCMDr=mn#L+kS@?xB-Y(Xh1*o7zOHEW%R9!21*H1HhAL%7LyQfiGpM@ z3RJ=vum(epYj}OYy=0j}R{P%lwZ0W?&)q7`GJOPpe}AI(^}fUqARy?l5sWd@Mry^A zxEaj!mry!*j{6sJF+4Dpq7IO7FagIte*Ac-Ee79!1TivX=cfPh?LKB!|Mxfk7!4zz zfaNET7z5%Rct5QFtG)MtYHC~8h9hD}aa&OkEMUPxFH&_QYN!ed(ov)rr8gm{Td_b; zlwP7#5eP~k5L!UgC{;j&kYH3wL=vI`2@oLPyKwLO-+RwJdGJ>&l48{ZfX0|{Ac zuDRxX%kw<%yRzpc{|w(##d?JwF2pl`^$5xm;A*Qay`4rGI+3ecI_%vm8d{!&_zCU1 zcJbM&*frZ{@7oqA#>j5IJ-m-DY^$|Pm7cK#Z>#^sbWOe4XYry2eUo}w>?~dzLU_P#c67t%XiXsFl}H%aPY5M^VD?5_N4mN(f$$ z99@fA1h0>_FOPy3)Ty7 zxTn@lEQ}D<9=GlkGSq+7kWarsiBX4&k)9NC!x6dQ2rKo@@}`zVS^jCz4JU zcE=B>lX|L3oD)p)vn>iIX)}vqNb~HKTTtW({%!^@Ff44QXzpRNbFTYSKhkVY5KuoF z8Q2JhPenrBh}!> zdVPD#t&LA_DCqZL5|f&T_C#AD*DvQfV1Xh>&OQARQWGEu(fW`i=OEc1NoFK*`0+X0 zmrsBzrq7!d^x;(F?EH z;$Q)q+K|Yg7OGQX0@)7cR#p&ZTqPW`i9MD&+=5;o^mEH zOgl6)NprV|-Zn|ezPZ@rPM^gvvs336|1^K;3qrMBn!DFe#Ym%BDit*ESH4BZvmZ;N zALbR@Y<&De{>o2vWY%WA2ZTN~G+cclpT6qq?%5mXpIpCw{Y1I9Ma8$tsvKJUYiabb zq*v$Yq?eT&$<|`6Fe#jIZTmCtB#E$t>A{j*k0TdrQa1 zs_4B&!M3L{r#O7a$Cns9LU4O+6cbI^@i;gY!<5pZ=`dKSfnD-X#2@l zc{rH!QTs^*aw<{6{Y9smqU!_y&>aa{g6|n^)uzH-z-wL7$iRyLi>t^3v8YP*1;omHa#vMF8DNkDlGU*Z(rEmF z)7BCpE!x*Q*-f@YuQO&oDxMk{u*N_>*MIot_T_%wY0Ii?9UKa+i~HDw{qdbYd4nHuh6=x@)8E)5FH(@D!*;pwxLM3h@cw>@9aEVc(%H>XS9Em`5QJa z&f6;Iyd>+3I(D@dVPJN4nxNHgUO}^~)KE_`Vy#yruyqor=YBV@N^$N};T=ykYh#gf zX=|+t&UigpbC`Mhx0}fvU zAkGhwO+%%f%4bQok!G637KRxnl)6h5G=r{*f<~KtcXomuRW{zJfB$LsHv-o+85Qi{ zD^YkxmdeAA${L$@k4`ehkSqQkXYmHr%MJoeF|Wb#dz=+D49yO*LC4Em!l(7R^w&%3 zVV`(tNy_!>O2$nNH7A{@U~qUt{5t7<%Y`BY^V$_;IP6&&^ZDe1dz1@(i!GYRE|psw z^3x9DSUf(d)4*IZ)mtvyq~MHM1?{ZZP3{!+tektDml7?1i$6CxKk=jszX@;hQAO9q z!2%&-Kb%nT*YQO)|O^WX(!6Yj)Iznyf_X>|6_+*Y!Ws^VN89Fe&&Kq?H-vc%rq z)z$U;6k_*2fvZd@I$2lLY5mUBG&{;Cb< z#XQ2pX^AI;s{3u9oXhJPdD7w5I}X904~96{`NzGt7qhl6_d*Y6`E^~dEUs~PILS(?XGr) ziHevAYwrAzpA|a3C4$PC3{z!++gx(=QFF6lweIq3bZwVfds86Mg1Hz!zxY)VLw?ky zRbC;}Q$MnS8L!3f!#aVRqEEwytm80$H(4u8lvCoKmC0~<)!{4Qed!X7Yn;XoqDhMD zcUTX*rm)K4^4iBI03Hj^2oDK)0yTrQ52KTQJWN=oYY8RLZn~}nr;E`Et3mEaUSB0@ zZ|j1wL=)*sHf#3w;f%mz7Y0wNLjO&7hcHgYcPbDdX8);`ag5^A^3i0T_Uo!-m4 z`?^Nd2=AJ(1EcAIYCP4bI|O0e`V2ZXULn`7Ddw~+hUIsOZ2Y>Cs3bFL807@$D(ku zsR~*zYVX`O#OHibw}_Ya*A+blRqLVlc-v0;F1XMZ=jP)w)bMvXw5WAAA9K0fF$q2J ziNw~$cKDJKe_eun_0E0!DqaxXW~os`w-!_1D_4qqDheaXC1JJr2FGVVcPJJPGr^L7 z3#tynKuERKF_*lUu+KpS=k(!ecjw&P90|IVW#8vZAXlF?HITdPa#H?M-GQ%PPaa)+ zfL=i+m%#EAPsU=geq?<$arqX`mlSrbJ;$Cr8GPl67Y^&5ysTOs>twmpl`=g&?i!kz z?^98IIqn85`eNj(jhLVn$mGt1=54YoVheAJ^M{}jY;=m9f#1L0wlGiVMJ*m`pe-z+; z-62}`RTwSFQILSd`H&f$W?lr^Y_0Ij{9JXvWnuS*n~z~^2fO?wPF!y|5_`OH>2WkP zktC*SR2MmCjgCKH_X8Hmw*U?Qxs-v{NTt^TK1NUiml7|1 ze?Xl}r`YQiTM%eC>r}TUv(2#$ErP5FUx{{a_>#ZBcKB*=hq1@?AgWW_Ol`MFm7}%b zQE3}rvJ_1B8QY!t;@;=5Ta(E0%}Wp5CQ||PFvX)*qNcue?}s4pfXLN>ALl^$76$ou zHcc0TD+2YQGz4NJgM%-}-~;mw`YW#;aZiPL-*0RVw$HvKU)gx53jakN0Gay-NA@Qe za1AS01PxCq8-sjBMQu&{`1{exO^Hrb_(E_#2Dv}Kh6}*BT~vA^5*GtbcH4hSlm5m^FB(t`H zF9Cn09F{^`?^^I~l`j;x=D0fM45yD!ruf2+t+?%iOLtv#ue zXhgDYiwI>b1n1?_BS03dytcgpqk1vfu~Zh7%?H%gj?2*dKX3yW<{*&zryS5lJ!&s`|&S zH%(i_HiWQLLNZ<3AzIqs7-QvbLo{%)IJ}K=A9lsrLdXjGLsvJ`16K!!&dmgl%|R1i zKbfq%1}@-a5{bb*T3UbX8)}UV+FfJ1d%X>QR>IT>j8MHU?fB9o`+lV>u#%)L*STfB zfxt`ZJ(lFqT&7U1=v)^g2Z@yQ$m#uIg+j0Ow1>8qjwj`f)LIa1dyvRusN&|nA1!r> zRw{Xc61Yk5$8><3Wf*GiR!n)-mqwtl& zVHpxS7M-eEebsa|rjxDh{O_C^xbPoRbf!Iq3F73*# zCyq74*+Q7%ZoW`{||vkf5*FB zeURrq(}|oNh0@YBSje3IRlwD;$3l+977qZ`Nm9r#8B)j2%*{8ATe8U@kjXX4A0G@t zM)7IK%8e+Qf6GRMuX>cHO1}-X149>9duW7nWC3#%Y`U>3$_lUzIc)@cLrrqp{^*mOV7A2WPb|{*W>B6gj%QCq&kTmL+8b0zqCFOK}3D{}m|PI3HaR zJ#jn$Co(uIh>g+lC*yy)Q@R4APG$vr(d%r?G~fpFxQDUXb8`{ZnBd@Gdf_rVaT@8{?1 zq(M+<3jTw%th{BOi`zHZGQZ&lhrdc{_rmTlE&sLIM@2By==${Z^xo)_7C$@7qif%c z*W57W6!naLn+*G@)lN*R#kB|8$)K~2XDjfs$E_g#Of}m5D{z6I!5@I8ksWjQ9x& z#~u9_@K$$l=J7eO&0zy=mTax@D2GTWKdd&B=JR?razbAD--d;r>~V0~$U5-8+jP*T zIMKS;Vyu!yq$a$KB;!0OMWrccwa35l_^T++SlnvNU2HQkX&XL!D0h6d{9$m04j-iTh-uvQLSYVxO5jysH6bv$MBvLQ?2UaU(qb&j`lSH$@K~Jh1(`KdD*u zB)n}o3Em%KX<+-aUxx<-fU)s&0?e=b?OXI%rPtf9AZ^Rwt(~dERpS&y^uUJnAsEk{ zozR7XeR^Oi4B|WAdr&)S_b0^Ckp*)lb3FeW06Y$bX4>|2$4Tivl)im1TKU@cd(r?u z!vWxaLauS9)y4mO8anjAj2(rzsAQFeMP#c^9aU4fNfP_9Ai2sYF(S9@+y>E7+ zwN@KETuYdB1IXrnwnbGDWiY*V?}(MQdx*rRsaQ>`n)h~4Ona+PR&-@1@)h*r3 z>g$Dth0HO;7S^w?#R%qeqoWx0=q}}mk)!Y)SO+PYN672HirLCKwdk2e;alHydLe_O zTcr&#Qie&7BGDv&7sdBOXQK2gU#;L`?7&{^K>6g44P7G>Z^s3iz##={WZd9GR6*C0 z)7%6D3_;&m85IxNL8o##fF<*tdhyb*g>v1)I0Kr9QTUKSaV}9ouLJfbJj3<9M|t@l zWeZ#mE4(LA&0`+d1c9$s^!ZAK^T-onY>MB(<~Q)-B>q)@MTfy z;J5!%ZtKbEDGEq1$ju#!r$!J8FXSD2*6l%ca^><1ABGfEIv&X961S_%OP=&(1J$m^{IBJ4Ujb$l({{&^?0yPIFJq zbKjs}07=c<(Y3w2qiYATYMk)eOzq=lTlG)FhZ=2?Nx&;*NK-r6?z^l(}RnMzJ#)oousJb&DUIa7zx zyZhP=k0JJ-9S03t6ebbwhKHgi!7pLE0q*+(vD$pM~T7Ed6opblF57lAg4eLdX*zaQX5hc@c!V zgZLEwWn^so#f`a+@<5W|PcyPgXNCr6f@Wp%5%-skOq3Kr!3CXvmZI}=dYVM6s9=Yi ze@QvG%XTuL%bCKU)87R4pNRA1hC#Yp`1axjhO6PlSjg~l*+4@syMA=6SAPKdg)lpx z(`EQ;lcANFWn#5g8(17JkGDDT{KrYP3O5~CgH5CI7(M(b@Plv1Ye&y zcJtPh0RD{41!SGC5W&ESkN)`aqqYy?{Cbx^!Bhv0*@R|ibd$D-Q^(?yFXYP{Iw9Bv z^Z{s4=>n?PFgMMc&*#TU_UJWQ06CCr*5L*uC|okoT9%nftMP?c0X&|E{>?I|&7#COk$!gEy}L@hW^8n7>KvpV#TKJ&hgE4Uj2NrWN`+Ucq!#?kT=!Id zn%3dNR+X}qM!9CsnHGg-HG2rS&tC4bVC&{d>Bv#5Y<6ea$=dr_Wf8Vm9*An zOOPj5eL5sg7FtNv&WQ?bhc^H?m3f4`o?2VLh+p{DUup*p_aG93~`-2gTkK zYrl(s*ZcnKxDTTi;`e`%{^Hi}OX{tQcT;@*N&soiQH2F3K?!{)=26~P8^;0Q(Fr>+ zrJy%=5MoW(Pllq1hprd;j~>W|udAuq1#n4(Lt*!r$m2Q=?FaVwF7Q8lZq%z|dp32t zP%wb+zr9$RNQA|MDzf}6^hwulfhVu3skt)p7`fJ|Xas$PG%J=ekjsbYweHGv=?5L- zl-%=88W6~k85M=LdBWrPZh}Q&dD%q*5LMkC=y<@;9OX{|hBcrLETO0*pVeDRBRI)> z1E9R%S9Vf-S?8odL_i%N&}4>Y)Q)=}DBUJOb>UnHJ~xyj}I0A~&PAt}C9|MBjB4~ULs3~+dSATp3Z ztRITLy)cl?`rGyRKs*L1o&Bhray&B>Vra-Hxal6{9_?E|?ob97I5;B~dz>eUDLB&! zIi$AQoh%Z{uHX!7p2b9_%&~SpWMol`hPwJa>A!;7`F6pyZv6Zj3;;t;lDqEgET^$a zY&bHch`>9=Kde@JH?AfAu;uygQ_hg&1Xe>bd7&aDz7>|99E+#3^!ibsp%&pL{cV8ix;`mY@(b>`PpE z95x$_*2ls>l>@$uPNj-o9Y!+pVCeXWNH$P=MjAwoQtVdH`uaM7;L4^9@gv6?6bPX4 zP6{XQO$V45tbW2=OQP#cogCUA{ur3%I?iSPO|38qodA}y`Ji(c=C-%#!fZrM{*|@6 zioy)<%iVX>c4H*~DCP1Ow{(ptZx(_?j@|Ty^K9=CxNux7Tu4=7;==-0gyW61!UqvLI> zhZ($sy8szQJ<}1d7IG`noJu+3ery3^0GhVi8WcfK4RSA77F=QU09Fj>e-7HYdk3s67vmu=g- z2pMnGHOD1ukw5uoHDiA-9FLN^hNv>4uKk<1;a{Ug+prt;!9xYOCK7vrnqm?m0tGln zlNNx`KNCj>zVi5hsMU=XS`;2+w?7aVH4Dmtets{jMje|C;9kqFD>d-)s2w5G zdWCPShynx{9AQPPFd2Hq(7Dj11&W~X5h8&8L!O6@-)n5He>$M#k$XsHh5SpMW5pI} zt7_7ujm`N$VxV_i1|7}892gn>9H3U6%65h{IC4G5EEzQg{u@GMo1@j0m4Md!H(Une z1CUa?BCslhklv2~SsD~BK?%Ou0Fow1Q)Aa$9tFB3ATn~kvk?x1npgQ-JW;FC4q3o; zk)VgFfc3UbN{V^yyaa`GPt~TBR3zM0W07zH_91|Kpjd-6qTozGNJt3B6F@O&q+yN- zZqoOerXN%a{FBtu!w!7K2zVH##TysH3xxeQUG!UPO0Raal*Y^5a!b2Cw5x2pi|QeL zpfer&(lZ2+WV!ZnmWngQqsiU1!f-tI35e%F2?KNqm@u792^B81j5!;Hfp$srhudMQ zqgtQ;*Eq+C^4jWZ&t~n`q;aZaNN8w*N4e~Xs>nq{Rfy;NU4hIn+yp<#CNwqig#feM zcoQC4b>~lGj>I>r0eGPMHVQX%n!N)mT3&>mTp#gfM{C3Z`)a$beOqQv@zd zfbT&A00O0^aV;oGpb>LOzP7fuaF3B$B!c@{&{=qtgl;rHMDtQ*6M<_I$B#bk_Hft8 z==%|Ke3zzR0b%VO)zQ>!j#Ud^omWO+aA3B3+iB^#DMlNFuV(GF)|dw$-4p1KS+zR~ zTxm#%8;`MZ5L{MNxuM!S%=|cR0;IV{C3rlG2x;!ZFM@HLK&z_1!|h?JAvSC8>T8Z; zj5fGY`Ai|mH zL=@-)ZP_w;ky7CiGrZL@B8VD9=t&(I*9XN1A&<~tg78yLSq|L)e1O`(V|=lbFQmB05TA>1_=Pl<#Y#2Pyhr)pkf+O zIlw1^fa;tBnTzoZ1Fz2ao~MEdZyp)vsEU7 zr=s_|I13VCr$sUUOe{btw`(Dp9=>J|VJtHg$Xt;6ZI(464L)^@pM1AgL1GPP)i~Sk z#e~)RaQ39HmZB;ek6T;VTLViieY>{DI3A+r$pMP!>gYyWvCP#LRK-4LBkEVX+~;vB zv|;d@FCHbRXsYc-8C2v}#+`4{ccpMa?Qx8y3yiOl!Sz3Hx{l~=O;bK3C*W^X~KRaPCf;M7lp;@Q* zUMOEKV@AwQod$0MFi#K`bRD2C@fW@9UTzJ2$l81po1Mc==~cf!A_XgH3cy^_*lpSk zf!xS;XPznKBTOC6NI)vTCb9ScRP^5S1_c$3zXw?d#?SxECstxQ8M@09_?j5t4h-U@ zd0ir~MNV%x81XYVK%CwJe64>Wnh-CYvcFwfR01M(KMCeX-Sk8KOH%<6q=DV^Zmub9 z82tYIU1E8v<3+r7^-c}V6Oeu32UCLVdNRU$n-yISwHl0Sfd1oR^Wg{5&mVUO+ATS{ z9n26DAk)0hm(_VWrXxXPr8rpBK_)twc@U>mPwdOfOYcdixhYR&9D%v@lGrn3gX9gU z4KH4oEX4n)57+-^eAeH~3)Er9%4sj;Aob(fe~AG9XU_SbCEtI?PpVXt0a~wOSQJj? zjN_Vo(@8x}ugzr>GPO20gO=k4u2rKCoB@Jhc>}t`S9@*%z4QP*_rt(c)%))?LV2mC zAv}fm?kPK4+d(1@hw}^$wu}coSRb3q*)pgEfr>%b`#M;pk{iqb>W17y*XI!YI>@i9 z1N82bKWH4rFe2$086zwft8E+zA&}Hc(xu=O-!)<6kyGD~qT>fGt{*ydXplc|D=#6k z6yonLj^vk1PC`u)mg68q8mb!eU*paO4HJZuK+D4k?86YfZ~gJ!zsW^@euCALz~KV| z9o?@gu_o}!mGo6NfpdUpI;3>}(FMtOYvLvitdeC_a(~5>i{Q?On-mC?hv4g;niqCA zvDN0r!5h(OOTWpa;R1g!9?oYhA8=d7-;n}DUV1w9A z;`^VFsrUQzWI|tSMCv7N9zXY!OeW*@pV$WJiY^+-5eU>X5IjVN)qcFr{KBSH1j)!l z0=;!Lq!=_M|I4tswl4>#w!pGj07r0Hy=)GYF}6`wDklgL;4g2SPZm!DJ2@G~oki4% zm0)ZPx&oXFoGWPMg_Qt+fF_GZR{-jP)ZS2ZE6-h)!DEZLSn9?>S`rrK!ASEg1ek*2 z2XV8qG3V^>soV5Y^ZFPJ@;D+D`&0)(kfemfUXe!9TDKPtVmBds3OPfQ(v2*;$^sRK z>fpuepMSwpNyN{gnYE&Ae^5ZyXHd0zH&x!^P|`->s}TZd?GAd!YFU~7k4i4DVO{O9 z!EU8I2g7=WQL)GgVl!}5VUT*{koCN3?J;Jzhkt3ey_2^Syv{0swi-1vJME8;3F?+; z<$`JkbluD#jcvemP(D@RuWf%*OqblYt+*x=;v)vnTZ-DQ4ai3Cd^l*7p%K%5nhM}u zORrzez+Gb06^nSlJn=j%!%N7EPn0fd_@l^q zQ^H_B=nOGXa}YEnhPXeD@yQgEd@jRRV)W-vGcdh~>U?M@_lr95@#{b!DRzZsR(#)= z$5W{8+;a0go~4LhH#alsIWi5}8OhPm%y{YN{IS$*kcAXW&>-uH&84w*+_0vmrvBcb zI7O$X&d#|hG0VWL+!`4h?A8g0iX&zw&>-^!Afe23w~CXh^EDW4a2ze- z4}{3j=6`&s>Eb|5XtK)tLx~?&1RH87kJ=Mq`692Y08%;nRMy_6Vr!jlfZ2e~@o%_d zw-9@m??7zHxupN-KiTbzFOthF3(sbxrw{)AL66Ph6jHtVcyp1u!J-T(vKxz3AK}iE zy;8oy@#a#N68h9qi~{`pE?A~~QEw}U1$FRw&D~Ix!3KTRPe3!NY>f?fa9t}LH{V}J zt%E;FaE*ipuRd7GFR&O_EvDw1;{2S`c=zoB(?PffMlK*A;32<-W3~_<*u|!sEDML!QR2iR$!TZfiO9V1EAaE$X9++FBr{CV)3PQPJ;H!4}Qa#AZW!Vp|E+ z8fc?PKhY3d^0HE*?rp>E>u$N3>LuRo5je8=q)VL2P%3p}Ib`~K?t905r6siLUu~h^or0~=Uzh3n^N zvm;(WpU&2~*pp2W7NEqG;;l!vWUsBs%)>ry_zC1eum7JX{db0s3`2&R9LL?7Cn zE|vftR5uj@Q+4XV-^(`*K(BGOx_@5#`jy>)NF(J!K*fR!t!)QL4_MfYX==jm9pAinak+aWeP(%a1*}nnYKxn4xVp9+-?!WP;t6cY|t8{HT zNid=^vYZTZ!Ag|_o5)R@2f{)IE9whG@A&w*E$wa}u#AAA!9M`9d?jelQ=ABew|Obq zUJiFHcDge6YVL8tCT3I{fdBDNEH8gzON0aA8`IS^hxG>>TtoN6aKCSW;X2fYS`jrOE~?nEV8OBw!v}x2vJ!Xy$j?(r}Vb_S8xzBDS+vHdou=5fnp255LS!AVu2;}4pK6i zxosClCubfQD1%!DveG--zJ%F_gN)n6)RfH!=#KfKIuF2-YE&MSrORN8%BQq?2L4AF@Z_x-!mle>0<|tjlZ$iMQ&{T|L5uA z=hjI9X|XC?RV?*hc}rGlV_KRxpMz9HNi;(7@mTGOm0ct6=QXiTKyyOvgALqoa32u4 zz^cWMf(+qr{GFG=U;d671$u$M1^&Fv`Em2a92C8^cT_YmgFP8>B5Py*pUR8r11XTxv z7glQC(JUpS0#M=Qg`AG5$m81{Wd?d`u=A9zD|goC@DygFrr0iH|cYlwX5)a5wa$&9zE^s1wWwn{t@f2XhF+Y zwCsPTzV=HTbLYnEbBL05TA7Xr}H$Iuqg(4hU!Un6p7{yf>7=9!RG|W8FJybS(bGk$DOPoT_@p$vaPQVHqlL6!7_(Jf<2 z&N)_jWtTe?a?SQx`t^F0`|*thgt?;ZK?QID;dh&kC%w(IlubyKg#SPVu>s_PEd-f# zYMt?0_hO4`UL`aS$b-@rTQYULrQC&oPC4nWfdj!Q;~=|r3^c=L1!dor+PVDqoz^gB zpdYGSA!RBSlu3yceb-t5E17PEQ67cPnjqeh7N`efY#_sb6+E1$; z`l^>wPL?{%@_0P|p(l->-*NXK<%k}tX&@}^F)it_3GGiXa2}H+c~t|T4S_!v9`;mV zRzO!ss{pAf2!;{nbk+3|X|Nzr5U}?SWb~lg0x&K>qnw#mN4QF)vEczwK=?kjJtXH< z4JEun^oZslDa9m!dtuiGr32>c3waQrU39JFb_fQ*diF)+)l`D2iFC4Sf@*mj0gV1D zHEA~&$}+sS^P${gbr|^W$VfcYE980u@Y{G}MVu~X{-HFK01pctTc94fbI{=;7qr>TG5Uu&}1Qo$N1+$)D$$H(p+YcPtZhB|go`9rf?ho#|*o=lY zhh4bj-twD;OvjLIb?Sp7V||w=Z@=^`e{YzoWZfnvpJrar`$=X~-@9d%S-YQ6yQ!M(uU z{l>oZa!<>#Y3K?U#%e6c)!I>94KmNY!czf8-Z`BWoc>nf~* zu~(0th>ZPt!rIfr1D?2{w6nAUUsa{Sv%m1_&PLL{25sYvC8($ihvgPK9y`DM!0{}1dcAcMY*e#gLX@ypWZkH~_LA7lqG~RHUpPl~kvsvy0 zI5D4Zj-AYlFAEC_M$$j90{38KFZ?V~({v0{>+AutTij|icFf~U)5yJ7Pn}&|neHk^ zMdzOHRC}eY%ku7hwnH(+=zwkI_ZV~6MW{#T+Gr>-Uq#_f`)Bo!K_8&naL%gV|IBO^cG*u3&XA3R*^kz=dl%ePLy{VZ|!_Kqzu&mTU{CthMm zf-r%Ufd@^{vv=nkoK_3@HPBhQW z(H~shRgiGs9EEDiK%H|@w2X_nb&D)0JpJpFvu1yOfs~@GymP08_xv-QrsCy6kI7Ir z>=E15y(sl3q+PsAUn&?_{)ZZevT#nXzt$#g!k!@3Vf(W1M1xm(tbo_#x^G$WWx*FF z%hV?(-Y08~4c?DuxL2y16lHE=xQmI2Kb0;w@Bp%D$fJH~{jFOhOS=uGj0pDwl|jd} zxTAAFyzU>b{TRk`E35O9M_x~lSsJ9=rk*actiYI+szy7U`%N%Yk+g{&NpLyy8jqPa zdnNzk#;cWI>Vo}n4ihbz*NE}=DYLj>)?vwUNk&Fmo^{KIf12z>U6rH(oIUZ$3O&80KGrqmPF#lDy@xUFytMJR8 zzTb`~^4K_5>}{u|6d1HzNW_PjrYZY@jE3I?T$=4CswAAKv6hgRjalYQ&Zi}xBq6n2z3Or<=vuZlL^<6qaefA zx-#BdNthp0ogeoo%$kYc@q;xiI#9b9H;kVfGbMb^${r1|6%2iTUOajZxj1sj+yMPy z=au$~2zb0LGAU;q6r~fdjDLAD*ZD4F2qVhtt&ooSI5Qaj9B$-=NVcSNT_#)b&{xmk zgUhj(iMkTEjmf$a!FFo0ud(W(k7l&hu-IEHw~x2GyT05k5s7<#mdcZwp)ULJq58yt z8qYK)BHHBTHq*d_vi93K7U+cymf-XFtWV|_tUQ5ZH~Qs^7#gpJ5nvj=2o4+ zlehjSf0cB7~97B-?M=%;GPV4Kw$B42;2A3M%6 z354T5*{ZrXlNN86lvLDe2y@kRPB8qq_e0=;;qJ`HfEVmQ>XCaAtB~0UnPX=wln`a} zjNf1-YKe0XdY>~xv?_8hueR!+XhMebBtubo{`<%0ax;P9xnJU_8HRk%#c5J_n&q>r z&8dPn*hjlPr(If~#4rwJi2X(_zlsT(epfkmUvL*$EB<#^F7}&0dBMTJBLP{?P2Evz zqG~7US%%0Ref2&(=yihV*qz@J_K>+*;>TZ&UXqF(#XpIu8cE2HAo_$kYt5?-IL)O= zQIJ2)CihA4=;|5^H#g0G%PRb~--=5lV)jeXH!2;fmgkYcwBcx|VdU7?$6r4jtahop zpW#RHFcf&X{d`H5+N-WJz_6d&n>owAI(2u1s*>!PWV^{GSn4jaF_9Y&OCdc?Cv3du z=>=qozY>o|7TlE*Un8{YRrH@%aaJF?N=!H-p61KTZ|)J)V;+H)v^%&Osf}q|N+&6M z;Kb-QuaDyBVnv47wvL}yMuSL;#!U@_VIA&Z(F*3HcIKY=qp`0L=MD_T$=*t_NB zA~tL+oM9fByn3ihaff0XKp2l=5(c+VDQy!nVZ13bx^?HQ-F^4BnT5h($ From 6785c3cccec44cf55a28ab54158efaebe1107c52 Mon Sep 17 00:00:00 2001 From: MaratMussabekov <48041687+MaratMussabekov@users.noreply.github.com> Date: Tue, 12 May 2020 18:21:02 +0500 Subject: [PATCH 28/30] Add files via upload --- .../secconmgmt_baseline_intuneprofile2.png | Bin 0 -> 31688 bytes 1 file changed, 0 insertions(+), 0 deletions(-) create mode 100644 windows/security/threat-protection/microsoft-defender-atp/images/secconmgmt_baseline_intuneprofile2.png diff --git a/windows/security/threat-protection/microsoft-defender-atp/images/secconmgmt_baseline_intuneprofile2.png b/windows/security/threat-protection/microsoft-defender-atp/images/secconmgmt_baseline_intuneprofile2.png new file mode 100644 index 0000000000000000000000000000000000000000..bcfd6506d9c18c5144ab2639f90ce29cc147ba3a GIT binary patch literal 31688 zcmcG$2UJt(zb=e3<1qGuh%}iI5dncwdbd!dMoI{TrgR8M4>d$VQK?EV5|l0>K}zTl z8z4m>K;raC<@GbJkFTgA2FMl`#KMn<17~JN;_KQ$}KYsJLWqON;r#j^r`@v!0 z?<4+qZG(7tPJTZ4KGfw`?#jax>0qdP%PP!~I&&(@9-PnR3SRw+yoxMN_c>x%AsoVq z9dv_P;IM}0xocxMqaixTdd9i%()#FcfA7y!Twa0enHKj5-O5YHG<#zVC(ircra!Y8 z0XG|6Nw=8XDm&+SEaUgBNDpnvXH&abhJmSy)K$amF1008M|^)thdXgQBjDS?W7>8;#_}S{ za~%m4MMW;(KRpG;gGHwd@av3E(97DGO6?zrl0%2TAtU@rH&;moOjLqLbLr=SB$e4l zPeS1^NN0v9X)!R$slsozf8Kud`sZd#Rroixf~XlaEQ+@+lNR>buD^EW@(zvlOov=b({!Cp%zLev|7TQum~_cG-4UN5VV+ZqJooC=*~%^vGH27>qgLdYXFw9_%6_`R8d z$k}cC;T`+QNuAXZK`y6X4XgcNjUW5Tv!F<1O|>AhC-FKSX1ae&DSz?jTzl-Hf?p7y zCt-fCL0D_28-9yF@ZubNUITSfW5@FK3qcEUJ<|BF*5uNOrWgre!Z6m35CwXsthF3>;txde4OAN`* zBe55C_Q^W^xk|lCZe=gpq8LZ;tPg)xjV0MJ@$14&hrP*K9ZthQs43q@0Um$HPeLbR z?65R`w{*|(`ra2Brc7-7+{(|Hm2H71`^)i@IM~?1teI^a2=QppZCI)9of?w84P zvx1vxDxhx$IUjoTjh9{ryha^{q;$0JXKq_u5kcr2zfE$xg|gRj+u*L|P@X~f9&+g} z*4Du-+?DPfuPDteq@)Vk8WYi_G5f#`QG}qQop4(hL_((nSOH(bSNf<8q$O{Ib(mr)$wB?7<90l#FRBunCqRc29|5XEX87?&`dk8hKDyhS=X-!mm1P z41qNF7}OwBThA-%tpkos2qWaP-7&{dGN)kn{gf=~{x-D1F?hc_dYId^d!*q{MXEch zOVee5ti6xSMSZj6gJbyqz#ipAN5_Bw4={?qW<^abGbEx_OzO{ z<|RXj7^46m?YxCw4W&jhViaaV5uK8EWs5jhCUM*e0d1}>M3B!nxUcJb3x0wbzYQAt z7)*Cbnc1wi$ZMMPmCppD$~c34PPpdSLf>H)wpkU`uQ23 zCr@GvVw=4_O$x~3D%6WNa(DDkxXISXBX;@6_Pw~s{Rqz}8Tl6K8T`n$0l|HttNPc% zPgul2D?^z1ZJ%9WMJ&>}7cKA8zyGtsTl5Q*rZoRuYom3WrnQ^o7e#&{iSjqK)h%F3 zZ1>x5o?3$8D=Qqf?W`s$>hCJv`KC}}9_h;AysE2cA6jY+A}M4!`ln{#yb!i(9Li~u zr-9*NkZ^;1#CFBeLgR^x*=_-e&H4Qx~};0>D{K8#^orP=W#Xi zcouW)0~J`R;*r*mo{+v-8rr91VzSH*m(~tkBURdb}ChQK4L!fiWLhPO;MuZ%-pd?@?DrF{`VqLG-ZJ z>gwvoMjL96oYT%HfpmzK^&W{cLpmWb?viX?M6WB+Cq{0xK@Kk*)vBna8_J0|$Lb>H zeia-1Bie>^YXOY5rVx}}-HK|UBkf_E^Xuymah|eC_o;-tg#?lu|`?{m6C#cN) z(3QlG19%&!ji#{0@Pf#7*O^6Ll!eRir=ZNsAOpKyz6NbqW1=Nk3A^)bV)U;DAa^0U zQzcYLQQKID7JJL{C#tj~sbb6~qigWt#V)!-_4c5`_*Rk=l>kT97Y{DpPYR`~z6o{3 zwX!~?DXdRM;u}7z%cPD|-En&$owE~7af)x{N#sIkD>y?_scZbrH$5wad5O97{TZ@`7(T+lAd zc5=Ch7*UH1dhxP9#csAoJbK$`-S1Kc5gR~TL#Ln&GKk9s28PJhm&<5lUXl>~+|JBc zo$rROs5pw0lSV&8zJ<&dIJ7S-jpQ!d+J^mtoC8NSP% ztvqnonEGzS?qTnMn7MI%Z02YA2CWiKNXCN*HQ(8Qo1n~|=wG}EU8eP>JD@bC{SC{F zi=*Ws^z#qM7uv4itY&B>6>ujKL1-e=`xSTHnoP<}^gpCn5W1Bi1Cg_^D zJ2uwM&5cf{>*?u9C)7av{Ho6T&NLIDD=RBeymlpMwDHr_)YRnUlin9Y25l)oD-foE6iBZet{M)488M|-QY;J7??7K)!VM~e?+h|#M!pv`_A=}eg!MU}* z>MX;YQ@(`KGGa)WQg^lJEFVb3=r52KJsrHwEHgljw!|*_Z3xsmn37K*!z&Pz?uReFU!Ra$JGCk#tdLmD#6IUu)Fja+Oto1 zWp?kMERz@QRUFA_Y}4pqWwkcG0`@6wp}Ljq8`i^$sK+BmTmS9 zKPt466*auwQe`s7G!q{Osu0rcIQ`LDuO#uIQKcjrxk_q66DR9yUIotJ$ov>mlVmlF z)-lKXYi$%fq9>}j8_7L+s%thU=I-m5~mv4Xg3%;2K*jlG*U0Akb zT7h76x0Jw2**#&Sf%f*gBavP2Yh-&&H-1Rw2dAQ4he#x+dvon}!%|;tZs`ow)z?Ft znwr9gOHHMBG7ld+?uZ^RYVbguTls62*1?LTKf#c=l`A>qARqfj zZCtE+{(vvjW*%5>736AEA->m~IEC(rfp(TDfdmUg5oJ43KB9qBKqdZ7h1BZWof@^? z2j;;ADMy&>(za+01^YpGq~LOnQMlo_+-i`6jCVgg*PyDJ1~JoaNxM_;S9rC}J@^8G zcP#fs+)(cT_)?t!gS}!r5CaoEdML-~er`(pVXHyDGC!F}uxrtgsjqP7KAe8Bh@$bf z`osFn=!gbJI&(ZxzL>p$9Mlv&k!P3Awcp-2qJ7zIN;eouU;mDrec!r3G2HZ!W8WH_ zDk>~%r)jPjuR

7vF?#0f|IoBdkj!5ZUWPLhT+84hX2`zoy)j;Mgq_H;TRNDhtGt z(X%BFT3T8#vE^&$b<+Cgt68;D@9N@k{%(J0Y$Bkla>Xj}m1!2uMy28+2 z1uaI3N1skM?Gd&-S)|qK(hpYul$(*95&d=eP|8E|q?P*vG0`V$RXjloBf|0M%L_Ul zxK$6`wyKFMh3I8d+X3^Quc@fi?P60;UVbv|w$a4XGhR0sUg-g2L!|bu?HWQJZnlQ5 zKGMDvjiur$I74WN*b(J|`_ z+HIOzd1}!NW27w$lI%bpwpbt}R#mf8OybYrUud?u(|S_i{>O$quWB`6Q`u_`G0H#W zLsw*&9Y&@mDVeeK60sv|mxGnnt)pFm_T=Q7EAJ$Y$y3r1hK+8|+PmB%|5}jZ#x7C} z9wP89J%1yA0c}?^e>;3FGH0RoNL!?*35K8Js30U8v3R>mQR!rUNaUOp!b|U)f!|x{ zvVvoGUwL3FFc@DyztD_p@$qrdhsUv1IdO4u{rzSb7#JCU)#%k%>_oVr{A@VT>`|5m z>L}?yvQj&53_;<44SBjY+>bFGX|s-aYxC)J8)ZE52{>qQ3f*o_R}Z4U*3UyHI_9#% z?lA_G#a8dTwY@0*BHrBw+fR>eC#{`7L{N?B{kk)ex$klh#g=@0<-TO01T*Dfk$Nk+ z8?62aex2rLY*wEFxBEf4Ix!W{Q~O46<>o|W!}8B$RS&NH^I1E_Wu3&39hTfzRq|Yxh%i1hH#<(KUqY^xrJ^!`?^+D|E9vUNM!LOOQiKWvogg`6zm*sRkXBda4y|X*Ev-BrnHN;h6~$tMjDxXuHY8xB~<2q zjyZgcEz!}fXin%UkRHpjXp&fuV*41r)j5_MJ>@sTY-hF+7NrU3d!(0w^2rxM28ExQ z-rRUd5qm8dYU)=M%^z|vp`AoSEDI~_|5@&}90?ND-|KW08UqAFUfV_K{&h%tTr9dj@d;=#sA0(J(${Xo?QK9UuJMywo< z%o|QCEbDBT`kthG1tQw))tQV8>0j8TchP`FGKkA=G_&#@Z$@QqWghlMtV^$@6tL$1lA13W*+kl;bm=O** zGKeyeeDYltD=&ITYj3T#VLGtaGbm#meQ8QchHyz#CGXMVB2>Ik-k5u1IC&2|j;B#y~rOVO-xGhzbZq^eO_53yTprE5tgf7fxW4IXVg{qKT8aldfsfa8krzI)6=;{ zTS#jYqPw|us5haO>DYLPG1FK zKO`iiqoX5}c=m;Ecz6?iQ|($sQ`1DIw2qr*L-Bhef$#vK=mP?QSkpsZ4BZC=plppW&XO)6DmlYyimx0@Wy7#M*9^1Apm*QX2<>WQTx-s z{rex)l>yMp`_HWb@bTm613)t7FR1DB6vUc~2P)iM^CJFxoUj#@N}XwoY>=&}sIZ7M zHckK^;`#8(wXiVb(o?rTEFBy$Vc#=FDd}i!X48Na6l`r>QE?9J=(zv*RMdyeUw9sg z+w6GKr%3yZRAaet?jDIWGoux>Xp$fRpi+}{UTGnJ+?}eZs)9TWqJNGJ%(w_tH)BL% zNC!Wp^@oJKIj*r$wdphuk4X0~2I!fVP&^&u*S6iSA>Y0;k3yjg#1K}S&i?-Ii;Bp! zVNhuPC-Vpx3>LXo-DS`5x3IEuecCJ6Vq!2?TfnJ282XuO{&mfpox*%Co&;u`1>4%@ zz>+#D(CDhh`J)hE)l_dEPPQI%2+hBkCGQkHYU^QZ9G{t)8K&t71`{VH!WVNqD(+Jc zV7wox#y4iOOHlju7$9&Ue{HNtN=lLr4h@~MfRWlFLlKC!8NG)bj_eO9A6ef?QV3R! z&1k@fB#4Xp{Gu$ARJsrJCHfw)NDnu=3cctojFv+(f|rM9xbMCye)pT7;#^;jf`eAt z;-WiUN>0vNgzps4GVY^Dk(wl2<;%nv5nd`|_Q~=ud|NhS~On zd*WkzyEdf9?A903C}I`UutIPeNz2U@!qJ#a$*eB-0o2UUkOdeV(k+qI`u&98`%WKq z4Gp@DqvLvKe3xwd+IY2ilV&Uo+tiuiTrE@8YLSB9r&nRTGiB`2OZb*>AikBO{Y{3T$VGX3WmcCdjup zR#$H(D)fgp(df+K!-uhon!r4BRQymE z4}gCndtvrqj-19?$m4M$)`zM5A~056SN`$DVVtLNdfd4`J>E*CjG0??d%R9XDbRhleHe8fPjFWca>2;{uw^?w`6OeDTdD*P>j5aii^MO z``j`$O>$rxmFYS&EQGjQ1;G2%lzcg8-B(%T+F*)>PP?-7 z29mo++yWr?0s4ic>AjOYJf&ix4C!*+OK-ot@pQ|(XVb)(gi)LASQ45=3{NET@XuEU z7ps5%C0)#pd$Xfs^M;67P{HpeIq0909fA^!qs>PRTv+=nm9otpIdXr*n|3Q#7+~@O z5rd;{ zs(G26$pvRLC_CfZ$w^w_{>#~`cex#X;}d0#4?mnq@l<*o?8%q%;4-^@Q z9XO6)ukv0@_OMYeW@?|+pne(OE$ea@Srtl(zTN1@yhlFlak4~i?s=%HKAO9e!W|@o zAr5Xt$|`n`m#MkC)-8Eabuqh-cXz^rym#`o|EOVCd+P_>+|}aW{F&HswX#n4{9Gm1 z4Xx8Hp`mM^YMskabI_Nj+Fje#WzKe?UGW2pVR6^zS1k(^S{R)dqb@O0w=H4?{C}ve zt>Y}Ptgi;zfqT@37FHd7Zg%|h-tQnS$~&JXqq^m~G*pD=#v65VIgU;kx0USb*N`3S zHbyvSyjGx5=*K;B3<}Bb>@)VlPyv^^6fTI~5$!H~tp*-=ih31fCKv&KBtH9{A9D>N z3#}_JD*CKs3gRtz!FkvcNPL{0@JKK}aQ-nDasM8A?ka70fBbQ5^+Z{V_en`no%9d& zl71I&E32b;dE@#aNz3U=9qy>Fo5yc<-7~mRfJR5;uM)9Kf2h`o>Jy}M(e8a0zQ;sO ztw#TRnuV>C&v1Z6M{|p!F(n3&0-jTv=ku<+-0!R&XpXqXXxS6XW9Eb~7INc6RmeFm z$>EFbn$g*-8yi(sRXW>!3S>jEz45N;7{ais^7GEhiVA289Ao$Q<`rZ@6VOmtK_D$X z#lyx6F$$;D@I#E+eHBDVTDz6M>1SGZaZ1SIyO|%@d%O zKb#2vy8AsQCtMV?JzTI)4 zUi#O(BT*tI`#0u-q7kGb61yxsG^%j^wPnE=J53fFGG5)Ky*ef`Z3xi@u?8*6K8 zu~@8{*8uAJ{ujjO6DoB$oY!xN-#2Dj8d_TRUP$UsvUjew?Cji7vrDY`yX=pQ>gMq6 zMU9Qt;hwaO4>wm*_Cl(pSev{{`0XJz7!u#BbYfUCOh z&kI-zFQTHaz_;EqF?qCDsa+A!_FU|#i>m%NpAw?`xDKgk6D3pau(?6P@O6{!nw0fO zsQmr5L@tLaA7c91EP8hE1^Uc4fDd;3P*PIjvcrg?!kqRF5+JzrueMp5`Lc9&+!b-? ziQ~uDrWyvoHw5os%!WHJmx=K}=IsL1eG0~a9b>dQODusvI3XRMU? zMNp9{wn%!a!7tSG?hv6jtglv08O74bYia{>vCj7=e4YOD(yE-n!U7Td!(Y8_6cTl~ z+d8XD^*$8u*G)!ebt3PtlbW5X?U;U{JI9{xr#jVbK5n^aogn{J{^3rWlQ(+We%Osj zaP+33)GrhS^!-KXi3%n^)}fkst^KO-^!~;dA~}}Dc5tOTjiR6WR;&5H4U;%s9%*2fELiY4ZQr3;a0*p z{gB!tZPfT1t+r z2D6=l&U?7OP>)7CF6UlCsobfOgY@4mxYGi6Q@tau!=Zra4p;U^^k_qGx#RbWB3OEa zZ4t)jI&sVth+sbMn{=`z`=vd0j_BDh?n1A>L|d5S5F}6_S1<% zn_)uKkqM6i2P>=eK%bf5XY#H3q2H1{Xo`;YqL5pJkFw9#T6)@Ney^^v;VmL!2!3}D z`;Li4Maqo?F6D;;hW&wgJn%yZE%>S|700Bl^0cu3m0>^;i90zIqDP=T~3uyLttUUK%Y2EBlPUiGi{; zIkkc_@*?fOOFDu;15#zLEv&8ULpL196n%EL7II?)i2(TSU>OY+h{i8ewZoid3U;~n zt8;Tq9a@l#4~xaENIA;g`}~Bp(@D(}v$!Q|J=h%mE@H)4Rt3x*ffkCV^su;*@L|N> zMkCUXwyIaa7DJRMPL7pg_JHbT)qP}o`Zcwi)eVX+)XQ>;Zc46g-*oSP9S*cGXa_J3 zU7=4me|tbsvf43d^l;$;FDq@Ql2oO)LU~pr8!y(wdM;~G)YC0@$L~=6U6+bVJ?U}> z;fNov417Yq869@Q5wL9xs0^AA2Tqv8fLK3@D)E^WwaUerK<$W9M&>=Th7=VfPFhw# z(Ev+B{PFT(sE>B;`<|65xQ6p6b`v}b^&Ts_QmS8_lQPQHo;xZv>KDG8x4 z-cuug57k=lnOH`IFZ5(Y1k;NTiq&>E0LYJMUB$MHe1qz`;mYq*+iPQ5Y$llIpYGYF zjIMjR;tMk;<8+hSXHH$p%_#p_ro%C$j+U2D#Fr@R`PeyxE78x+&$yCB~a`Q|r zg0HfFfEgN|heNiFF%l6sZ>%?FaN5y9G*3G*jmh>D^_}ZQZXxxX#KQjE`X2918U4`9 zBZtO-DA;%R8OMRUD+77)m66L-MB**gAMHOHf9+e5TT4wiN;pYLqCESWT!!~p z24euOW57#axim?9)Us&zgdxks>K+LBlQ@CGEg#o|>4i#mDf(w;C)QdY1)ra_>~~1o zj>^D~d2>JWKEzULIvecqAC3ks=C^EoFSE+t6}W@H=DJkAzZjqOnj0S!cm9+yd+jma z4*o8~2}n7Jd=@*6p`}59nZ6X3eq=&@tqu+0Rg%D|ee z?GkxJ_bKAw;QbsI-S|I+rh6dv0Z)6N4u`>edwT=wtJlEb`rEY1sr8u_9RRlQikr+N zIosLg*}eAKqO9Y&`#|s6q8vd^Qdys|n&uIbIaq1jnSE30BHq6HNPSkRq2B1SDP z+q+{(4g?&!HvTr;+d3MxZvsGbFx@0eaS0 zI|Bzm{wZ3F?DpCeghNQH0pf*ssQpTW4in!zaBW>iB+#R)nN|E6NNE z@$2nxV`|pdsaK+)z0$$B;Gfh+iaE7Ad4TX$ zIZf8C-UlFCd+HyiJKSIlR3RCh+DvM<1z>?VI%m%kiL~GwyiE7?BmyYQUi6pmKB*5~ z#&|(S%|hIeo1g&iF|mudpRRaLSyjeHI~c4aZ7ikvuAiHSDIor0b^43geh6BZOPY(R$R<5Zxoa%m|Ej2rDwt{vcfBe(aV;qmzA1HPtY0t4E zpNZ#kSbtOlNdZ74=wXZrk176UAFpdFcn#Le+S@G6w#CIopde}kaE-x$VNe=2MA0n! zI?bc9Xn!G-)CQ!gOzwbIR-5bSC%onl$wP>1@3swhIVUz7S{Gzleedla(W5aS1S~~; z_eYw8lr2MSMNlJQc9>eEM}u#;=qm50rX{~Ufd$_r(i{Sig}n4(a2b#>XL z0$RyZK8t*+zrpF)J*5R97^=%Maz)1y{8Q`)D|^K3-6rqnECy}gJ?BqOg=xL03PJLc z5N7Mu>#@_wmlAGv6ui>el}D?~RBq5p3NK^zu~8jG02lIMSbnn9(u9x#5DF(7MSaNy ze-Qd7qu)fOnY-o?0e?wo!Lq|Ra_6%cEo|joIQv0?B7g}K zHW9W1`4_2+OwYfb&dvZz05JrOP+D3V<($MR#xjl2J&WJ+Jo+_hV~s)HzP<<`F#*t` zu&{8(isNn%q=F!KMySP8)vVTIV6=#|y8M>~`v89K_ntgz0~i6#VxoQNC8!jM+%uLv zG17L0?hrjTJDwwXYUYpEWy^vIiGE!Ku~)Sn@`#9C_}+(Y3$woBMxc41nLp6t*yfxg z99bs!sIOW|aw>14f;AQPMbjFb?BCp}C|+1G)VL_N8@3{A+~UWlz_O}86-a2wfd<<| zWm*)16RbB?hF#O61D$;=78gN3e~5nta!FqJ*5Iqe8UcUSp|Mr_D!7(G_|WkTcUt}2 zO1H|1yxQvLMSgeMhU$(*c(Vonlqdf+bm~4-Z=eWMs15&Z2r@u={z8&$Li;Q1`%?jE z!W9>-VOw4W403n#>h*AfQB-sDVlM2L#R@U|rhw6e0ZlId(i&pfkiT;C6l@(AQX+2jHZQVS|?Wr!{&2e3tABfLlEo?V7T-HM)6&@8MhB zW?>ifp4Hda1I4U29{~n8*MP72m)Q8wSBO|elU>kf{SAGc)yi5qJUcL{6hXM8g@xi) zR?t=O1cNOA?7o>sD2vf4aPV#l31~Svdx+D#-X@kXIZnq(qtPYh8@#95iLYY(;h26BPeyy8;OtUjA5Dc{7 z_Zuu;%#UbjOqb>RLEKmNCKw&0Xbx(RxevH>y;TxiVN}4e*&<=BT}DEIZX%b006JKH zO!S`9`sI5QypAjth)AHZE^2=4c)ogbbL;*6*J&suYq;x+g4hoaUh*lefT)d8NxO*c zy`=Rooi+nw&Mk4jr{r%6RA=F3;gra@9(!vdm1)OTIZ!uYc-Fyf$UR=Yf$#1&{^!W-h7 zF}ve~SLC9=KBEcF_?O=Y4m*D)&gvyr}1G zOOe%OOtG2{jdra%J=yqm^W^SGZ}x(UC1m8UX8QJ>?ew9FadcID{;O8(k|dm1IR=p7YCJV6z94?2DYa zi!*D(E*=H*&>>0?n)~Xlj-2{DKD>;%zWm}QCvnxNyC4PgCgpU?lK5m(UEN53pp=yq zXqi0v%ae_3tRK&RUtgX>`RWx>es#ICC6KQhyX^8gdUAAU|JSYg1o=^e+{q$wg9g># zfgXLY;mI)rmWrUS^)UfC6SbVTh>?>kS9b?)uWrYRu|IeSXsD`x@~)ogZX`>?Fj)Z8 z!yv%y>Oye*crOWeMEj)I?Z_DR5ovB+d>m1gbzyXPX+WwX7Kg43Q1lRep!fJ5uRY`9 z1>gxm+=Q`|HDUE8dZDd2S2*UpxP@Z~gO%9s9CDL=>t2f^c0aiP`Lnx+HPGJZ@hj}Y z>KE;CzV+&pEV=i7GHKd;c!P+ZFFL)sD8|PF2W686n~_Lb|G&zwC_~v z$*aQ{g1jj@a&)np-R+Np8e)0Xto0ev-sg3XlLH>#SCJ~`w7nrs(tR#dE>2bPoNqc^ zj+_T$XRpV3N`Ou^_Szf;b&0X~o;eD!Zcc9hxOejFW)uItp01%Mxo>el?4cE<}$S)uX8nK_qCd*zTRJjr);(MQTcUz4VF8aF880bM6AM)uwN5V1Jn za!Q*|XJKc&mwQS3soy%~VdM8W->G^Ebsv!CHd0FStTE7%g6fL0b+N~4Q6pnx_%%2A zNT5(|MeH%;5fo$AgyO5a<0VfX(Ofu;F6XW<&!SgXzL4YgC5+m_Xkm8o(PiA8BM#|YE!^1&cqM?n4tFx7ioSd8hZZJbbT^(TE zFw>Kh6?)dzT-{6Gd!^zN5{kT}o}SOh%9?8KG$!&VAkDDOlxj#rm1=zTws8Cc|b(pO*yJ!oqzA!w{JKc4ttg` zJByuLkbaiiM>)jvsK^rFeqQJnmX=;2`@Bdpy*(Jb08L9(Q9WTU9cW4(2BeG{7Pe#YFC`P6w|7$JFeA2l@Eh>;d`WU-#c>QvZt;{|^}Ld~9qiR`p>E zoNA9;#c04a=T?AW4u4#mSi-Y#$BrF6YL5`Pt&iTAjT&w>me1E<9>xOH*59JjQzX(< z?PmT4HiRDVNBAxOu4LY?U>=_PlTGi-J;$*5*c;l@|2NN+CWOiK4ckerq9cQ;v0^Mj zKg7Pk6FB_w5E$%-GY_^3i2{)q1;gM!A!1iqpWK$B7rrfV3fs%~PzWx9>DX`qcmyl2 z*b}!w@xU|pBy-QB$Sc+3M-=9r!iU41R>Hp!CCy1%O!jaKi6U)lQ*frm^hO?$+Q4j9 z2e!J;#G;Ocf3_b*aeA#t&Td3Y<|DSMe;sh=prP8+%d0GT`A|%n+d?RQ`;?yp4dX{z zTS+tC+arr{278WL6zq;jV(f2(VoPZikPKTux*+oKiWC&MN20^t@AeY&A3pXGjG9(z zd$qT#OF>r+msb-N+?x-lxdBA12Pz~J4Xo}D$sbNG+}qnrI+I~Z=wd1S_u1r?n3&;| z19i0rXV0(EB}K?VYo0L`2_XgcZpk}stbD!}Xlwfs?F#g++S~6yvyp!IqXLdLv=<-* z^yw;feYSeL%goktNC_p z#E=3A?NiAx5T4sclnMgEf#5>&^`bYP{6@VY1wkby+Q_NT^4vhDfwnyiD^^GI?MlDo zNvP5c7!tiaT)=*UK8{9=X+%UuTI~={aqUE{8kayw7JRQE_1H6O^OmDd`zc5WNVW!^ zfpM_9*8=tNmzl~o7wS>b*8tGdvaUoK?OAQ~Q2mj)$&a9cwcsdM7?Xu0|timbQo=a{-Jgy)S=t;JAZL@OP9}WMw4^ zZe|Q~2z&5~F5vWjSaYSQBxQZpH;GaxoS_HM4Wp48xEgB{Jk^kFSER2^PRu!_O?!ij zOrfg%0GUnW!fSOr7?V${jA?XRH8HWBxo4Gc1SjK#s3BFzHl@+o5lCc4 zbH9A^)4~6!B-3{inlB+_k>pB|rk<-J_;sc6VcvsHHOyU4kAE#y3bniQ#gy zPQ7sFSTal9Wl<3R?FXe@yR|kmO!6Cq$DL0$EKcbz2ZasL5PPy~-fb{oICo98&xBd^M)PEo+{O{7L|Go>p z@bdCH1WecaOw1b{Bpp*PuXi#@|2F!VKM#aq|0T-agzQP2ni5Xw($LUwK$z4;fWa9@ zm2)p*5XYfVsA3E{(GKXc^|w0}suLCMd_MvC>*k-ss!)u5Qw{Ld);2@zDyyvY@%O)% zf<=jy@VT9nQBhQU!fL=~l+elvCIBT-YMSQ*?3(IpQ|~$`fN*~J@CaQ@xD?`_p$RaI zfb=CKG?d9?wv>wB27|#tK|wGW8ZGHk5SRz#f=8dni}lg;)v>XW5myt4_Xuzu{S{Do zSp$l+dk{!N1l=2!4jkhEP+YCa5JhCupqczG+DEYJ>ARUSMU1Cbhg|1wNJq1mOnfLH zi(h?W(7c^^wn$ z8IR9jv$>x&e(uFJU)N$iC?Uf8^q6|oQ!Jo4+%k1?Du~Ii@HS~mE&pi+h}k$mJqnbc zGci9Db8~Ym9qa-ypMi5CCleBj3K918J~_Vq^XWLrvq!Wl%xz5(b!xcs3UZN`jToR3 z9CRhYGEmsgm*}+-Goa?{=~0Y7rmgehQi5~RQE2fpdBehD!ukw-;{AizjA1GCu5QUK z-NVSI4*?YTDA>CHZW@6Wh4i)Z>Mn2uPV3yvOVoLr@k$4uv8k9>c8G(OwQuwXCT4ve z`HRVfvD9F4;ze*h;5VlS&rNq;G=;c)1v^7{WP_gf$Uv|ra)N~fd&<41PoH8H&${6z zYCR70*h-kz*6IG=7fx%LO2pros`sr8>`{cTjej>X%x!hfL4R>}aBzt2-gd>J^6`!n z7_V+0e$v9*p!ZQ`{#a9F-i8ngF85TNBf|v&ILb z2MXJxa{H{T;xA`fc#TKqtAyiq@{0^I1mqoks1yLmWB)n%`s#CFpKOe2$8(B3&gG@x zpJd%gI)iIykO^>a<@Y&Q%2)LQLZiHm?d|Qr!4Dg?g?fNAal#{X(LcBG6j|gNEp2uJ4 zc*OKYK_erh$*C!-_GUSY#rpK=_P+W#9-i!bmhfAE@^bF$zdE_ayDfkI0TirH|I?zU zD?bX3&(ydj$N&-0LYa!iJfWq7U2w+nc2f+v*jQ|vQoxvsg2X7A8MMg&Y`eHJSjf{W_42Xyc2?^k& zE;9VKOx|1c3qvSDNrE^w)^gaZtbJryrM|AtMy&cg(%d4&{?2bab5|AL5xfD)6%Y?n zC_RB0=ikM`gbZC=Ty6|~Nr;bMyY!~a`_ij>4**pw8r>^2>@|~|ocu$t<70gMQL#@} z_iooP08J=N5n7D$hS=^J2K}5V6nseTO!D^e^$j_g@JRMrBxY!scp)%jClUitW0w7D z3q`=f*VGJo+~{}%oZOUYz~}*iHyYL>MUG_7)i^?&AxIK;Ijn6vXo}Y>*qs#)V`eZ3LAH-l=!c}bzSFl zWi}6F2i}@dXK%dFb!MzhSijE%dgEq*`bZyk(bCd_FZR7G2RfAzU76}&rG0zi&`@Dl zP0bCoe#w)va=nD}K(yb}i2?u9h`;kG4glgFM|4@a(aY1byuAD;#Tz&1^Z6X0^Itia%AQ&9_4OTfN`F1_*Q>ibG7(1~?C(n_)jyn3 zhmn9tr<6N7YQ1;jBajx1p`)fdh?{_vdh_FtjTXQ#?z2m`D)|rEseeak{U5i}?3diQ zIRIk#$Do>}WMxB20_F-lfd3ZpN8GU(U;_W9zW)DJA}Gif0rn5p{B$4*H^EUNMghTk z_}}laSTn=ke_nfMm}CtbtrWa)!9N2qo0Hho1|aq{o&{!Rl{eyvi{`L^bdpFhN;-HG z)$p&BC6kq&4kXY{asYo+f`j5Y*gH^7O-Owp5{b_MJRoi6S$V81J?l@7;0;*|+dF!| ziajct23%>OH%s8$x#BXJUhu*FyeuqKe0Dq+0V z{2(Z(b^+6oAW&u3AUB~>A3)aEk~XFU0N6W_^`+CZvY0fQXNK;j>myP*oitB!`QXq{ zs!uXtBJwuxZzd4{PkmH0@ox$43ke3cu~{B4@2+v{t-SA%DkLOS>3z7Q9I!8b*4`ey zJh3D|*>|#dEAE8w+N5(pz$Q=zg5M98q5xyTU@+ci^i=3|H4$ekfI4R6|M3EC1zYeP z+gpXNjID5eR_5l_KvjV${KVefmX!tuV`p}7pd@{Mvl0LBs*yQ7wGv2YW-knTc7RQ` zJdOEMh7MS)n2!4WMg{aI^!@$E^CQ6jQUG6-k+E!X2K2TiA$%HQqa@Ns6~{KgQ1Cpk zKY6*H5}DY}0`xV`xLbQUVAB8wRcl_Cci^qB-DttwYAE3@61nH z##<Y+yP59RZxA%o( z0Ma)=;-K6vt*aZ!=zNSs2_76__@`d~uSsS5>JqI1Z`k|;JQH&h*z1`=LjVGN`0?_} z+S*8|5+CG1V*fE%3r3ut)>N%5FZcX%ZfI!e#^jUqyO({~A*-WF@R{n8OC3^Td}uV< zcdYU#AV7Zle|pdjA;3%k-BZbM&+Ibl*uKUp-jEf%QxMdr3v2#ov8w4v2N$0$b|p>fSII zaR?AmOi$ZGAZ4AvIj9i3M*p|;?xkQzc=#^hij|eiwf8^%B5ZKRV7NX&mtral@MO|x zk4vwBplW&Rg~v>D$Y@z%;U{H}ZbOAS#-~r8fbaP=T;*Wb)B>jS$Q)4WTm_(l+BwGA)-Sz0H+e0=NE0b>A7*RKD%) z+!=MmQO5!Zf{cnnLQ`qd4@gG{AwVEBkzyber3z9UD^;Wf5Ty5n1ZklOhze+s5=!Wz z0@6Wx5%8|)-1mL&%(?e@&b{aTaK0-^_TK-ser>JY-Cg1-R~FMU)G+(wqfB!~$6GMa zTcivjndYpADJm(02LKR|SwaL0k{Sq0U2Wm1#UNHIT!(4~iL8Pde;a>V(PHNtqavr? z^HuiUy}fxnHj#qE2%)@!0#-{|4o>#szJrfJ%bdR9qnO1-Fsv+6QB2RtpgH%)MzMOH z^%ci-qDduN6j`{fM^du>A)rs&#Wpo*p`(G>8u#w)<;2MhpMEBfc#Gh!)E3Sz8tk+4 zJ4(MH*Zr|Rw7;)!Qv|cUe<^INTH-dJX|$`8Q|F{H5Y-1nM5uAPzT_wKtQ*#GJ+{3? zc5u3x)LU5|S7sO;Dvo7VHB-~mfD)F;5o1dc4NfjDwCkA=xV4fsya`vpPO)mW$&-6q zp$0fxa`N%Ov}-L-WE@Mn{P|F)Sh%+Jy@{uG=E8rO%qa1gXa`J&4X%%h`*go2OCpPk|GZ%2`FX4ore2)c3(0rA z4Cweg&&7Nc?YFEM^)eF!gO3{5PN`FE93vsUraqP3h1q~I;9&iCD5y3pHt;QZlF2hH z#wjHwh5Qk51I&iga{JMyBGjl%!HhjUNI+yv6La$csQaw2To!_p2P|x8aUYOA7`OH{ zS{e-Oq?E<%Sl#&xKD@c-Y&}9v zR)}0Ic8{LP_ScU#LPoqik-C<3_z&{*A7MfUD4ZVMVS@GQKuj*+HB^AL@kJ-ca2eE*z zgB@Esam|CBAIky^U~*g;rPH;m66|qi@DUak&eAp$j1<0*zCxP^Li;d!ZWsC0T(O+{ z(*GvaS38*c^Jrkk+13s;g7YL0xDQVMak!^rBGmXo^|y~_3#vVa`MI#))x#km)*dAc zF?R|@#M^Chd|XgWthJo7zBoqk)KQyE{ndU3iH{@}52|K`jSFOWiX4O)x{11$)JtMu zn7FKHc@<`es~^Rz$occSU~vkiT92IW;=%n>6tH7IIDQsRCjJR{a zZVGBC;s*T8m!>e`l5+vhY=Z;+yENwWzmll-th@f~(pyvyb#X^_B829!+`G4Z?BO}Q z{LdtIhMs%XGs?=aQNmVMpiv5|x4-%``{N2{GMT_tU`&&R7UEBW z*TO8Yvch1Z&spT5Lp$rbG#n<{vjztTsZsLcw$tuTDkOXDZauTB=zvwBTlDx#CZR~bjDupje z+ER&9&IX@J`S~SkzJ|T&@nrx5QgV;nQnl6@oMxW(q>{;1P&D%|N+}NIET+=z+6M zZ2RQq`l2$}UhWEi`w7o1+g`mWE&3(5Zjm080sZmf9ASm>T4kys-#M_?rWPnap z9NCRwwd!#J$8*83+!q-$U(yi-4^0X6Q|!E$s-S?wC#jn38C-{n;?%@MVKU;JXa;`8 zKt_WGro<1r-$W&4H{$57P(_ZkO^O;iM4K)RiQ=CnH!!BvTA>^w++Qi0+uQRp?w{5c z)vuguae0>jkclX=ZfCpI6cs3-g3;zb^ybqEMo|ub&f7_3VLW|8U=rYkYJ3s?G@B8u zb^zk_Ce-F4a8G7e*C+>n$Nd*~%{bP1p99wts>vL9?gAA~2#L%Ogzm3$35`ahP!V*d zAax4w)bq5C+2sed^J+M>LvG{i`ic5LAxwBnmU*sHB>3(r9n+SZYQ^PQ5c1BAdT+&? zmn>S21Ep&F9Z=@zQ;PAMNs>?)!iEf!SuFIzi+{jP{cBk|yfF0Zz@J5=#kcSQb=O!j z)ql)C{|`w?wp|HS=n#$ENe+G@e}%Rxj5^D*)Mno(-|YNkDwG^4TZxBeziPU=x;E?q zmBZm`Wpb&bi_38yW6+acMMpi3c>pt)pyR+$2$|nBdt!E0&s18wjts5d8R78q{yrBV zInUG1Na84_#rBskKR0T}N6MDd@vsjD?hi{c@)b5lqag$U`&G1A4tcQZi>_#6s<|o5 zrg~xvEN2q-+X=8#x_n1?)>wkVd;R~WIvolX0e;*C=LD7=Bt)6pvHImRpT$4K=xz@| zSYu@eENOVYoXmeQzV>PEqqt{o7ha_t!1Rg=`56c&anm&l@S`OsNx`)RS5?X zW@)Qnz`djUJ55h>GlDw=w;-wNJhETcP#X(nTCwpcp)*@V1aUXmOzN%r;?-hM1a|G- z4f~w(6YhKsf3dKzFg|DjxlFID4|S|Dar-|Zf{)0T(`QIx0rR177^n{MC$T`+Eh5CV z?I&stbFWE#?9D$SA|j&uvKAeW+JAT!p7{4c=Oh{0!Yr!bb&m=lkYovshy$P(jJds* z+=m%i!2TE>Wx8>%0!S1kdH#SE{8&VIZ^5tHHZ~dTz}s+WwDqV{;agGTjYVsEoH0D@ z9mz>nk1ZjTGB_Q*x%K{x?}KtSz*EK?o_f$o4C^HK6$^O-nxh_%ERq=#@HJpTh4}Z4d>c0{q08~79TRt}sq$qNjIviD| zClL+!P`71C#_@X7nWz=Re(tXMJ=B^S%Lgq+_Z_socrN)uFVD{VLmsLyB6Kv<%q7drW$yeUSpyFC1H zuW&>H&d+9v|B*#*dxl6z^2PQ_reKYNuaxFJJYUs|+&vP2*w5zKy(-p4_`IM>aTCyK zRaIt$*PMpqSlpKmcw%c?XChPkxNsd)TE_+iIyR$gfPc5}}zBj`Y~ zH$JD51@cJhB5uo(hQ`K~y#i{-h)6>h7nhap#7^q3Hg@cOd_vwH9z7?CGbe4JdCZ;S zZY=w9&Pbn6h`{6gf<8G>#%^Z=>n?{(-9PJejcZ`)P-13$l6_0B*cd(`bVu|F+1t5J zcg(6NWLUbmq2Z9H^jpmx?ycWwcbEc|CkU(JOP!6V_6-x$&3Gv;g^kdL>h$m!4|`HX zZa#;Qs>bIj(yudogLw6tJD>OleQEm~_%a$ha_@N6sqWU|!c6t)PukzP*-MLR@8Glb zY$;DfW?mArv)wnY4LKESHWwSK8b2Rp<=-v1N~Ug+NDPtV51_M`8$?-XbO>Y_b+B`A zRJNz353?xDZ5&&3FEPrrnW%09ZDTKo@Y5oTHE~kkTTJF^FAetjp(90_H9T67tINx# z6}D?CIgF>&BOk=7f%<&ek1!jm@vmY}KSpoZ&Aabt^^+WuvnJG4Co|a>;66IecTe;8 z8!yFF7%b#1?G_()@$&Sfm=vm<(kQU_wCDkO4@M_U(xb5HDv!*G5j-i8jQB&%91w_p zeXyk=ACNfLi?6embj0JZ-w`$`X#dGC#`EJr|`fkADB)n63GpI@rTWWZ>OP z<0#LyRy`K9BM^`BHYFoX;o3Y*N5G zP(!V+4Zgj>p?ga8a2UN;D&fTn9+Gm#OpfSgQ?(pYMR<=@Yvjk6B#HLpSzkY9N=>e! zueb3<$52f4y7X%-gf?;{j|H}YbK;D0m*)i#^LFd9A|><5g~FS5n}gz4dQ~E7oP?WA zss@vWTQ${O3(&pX^+Q1!o?DW_?3=;+j&;zl5Y#jdr=*ARHFnqz6uovhRvVl0)Tn+n zcs418#LG8zIEf@{f|?gMRNkTpBfngiuT589{}QIOxq|uOBES$r_>(|7Es?v?Gh9BHanK1G!w3RO`PJ9xY%ms|K5e5)TlXOl z2nSc!vf?PnKqzKUvs9Glkq^G@F?h?k`3*E(fc-Q7*m8nB>jD?c{&Uda$G~v7ME_Lv zHmIeg1yBq7(zx%X9s4W|46fL*pYbpQ>XDG}hne@l2#bv)67y0uzD3!Pm;RI*01$f1 zf#t|=EKd;}9nWVANjd`B+8D1Np5NXMU1Bmg*+HOOezWIjzZzRw zz5|CP7JME-!@N|IfuXl|8J*1}lvC_D?u3sK!x(+Pco8lre4%fGX1EA8JT~;Q76%1p zSaL4Ft{aD(JorUm`*mHZwZWI!ng-fkV14SscUYtAK}8~wEXLPQNzbnakgJCQw3$ky z8UN4}iwwxCr-K>y6p;V(plo4Wuu9k6Pson0u2QhxswxHGax-hLeR!dI(mE%P^^rvp z7}zxgtdBXQ2aRaQ2r!5VOE3w52>%N)h{j<^@q#7{n`A7B@PM6Pd3*s9$$jZ5e^alC z$dReClL;reOMxdLD@=upbLKe+7LeC{l6(j}xK5W*SSP2o9hbvy4vuvx101VnU8Az! zbiomp#=x4<%yACev^2OeofQx@1{iYdW&2+Q3@tS^NI(dgpGGuRq`zTwcT0nejeV2& zZy0ZH@7WGCd?8ly0zQ7f&EKI9SJ0;tG-FR!XrFf=#>A9sFT9Gdz#KN3$&a!y3A6m0 z1jE__BR|`!l2=Ozksv+MJP-bxd>NsDiTTgd#281iGy;}@mIM6ae&PL9tvaQPx{-hy{a!M zEAvKm5A7n_v%GyW4cdxyA@uaV*scDP78V;!GLo^W9a?nBU zQK_O7;@8v9pyis_8|0(!a&t?|pqiv%OCK;6sqpmllY8Bn8aq?cOXQ&4>a(ECE-gNN zIkFHSEE2ryh|B&-^t*MgDk%rCHcJ{jAbM!FS1FT@B&KI7Q9z zcD&(fIv!f2J_!T7cm72mA0JSJB(tYmzzn6N+7Rv?k-Z`nB=~ZDn=uT>P@V9N6GU zO&8HwU?BMzsrJ~T3IVIX!mhLIGq~U^^85%Ay`Z1#=;UPn>_#C$+lKS?G{@5qp0V#_b{rm&l@0dWiCk;n+xy>u(tsSyvc66Byc>A z=_gSNv$NGtRJ z_FT7JPJ?J{ZhPGOtnNRE~c>aN(V<^Ws{dizJ(Ei zQ|U6jqHx@D&5%@dCciPJB_ynm7b_E!9mg|Vaq$GBPBPVEmuFKHrf8lrNXzXija9J2 zaVy;NT@pXCtR+K&O3BDkRNMGP{J5w>Y+T%wR@lm08r43xVLTt4l&EghnO0aCR0=N( zxwHE~rEe4oVv<-sEl@H(YQh;}g9WXs{c$jH0VjcdDc8;IgMQ#p2eo$sy+z3}^1phF z&fy?3C1$K&6}utii)-@MH^mecanBsGWIHxc;IjEJ_wvmX+;y!ovitTWzN2bT@MaM$ zXJu1M&AyH+;%*i-wVCoM-C*lir5hM+xoixUh4=lmluL3J?Ipl!|LggK5vh;Yt}6Tc z-7Mjm8D4MBYPxW-pHrxRwto_FXUqhvK;hkS>qxYJ!5=Bh^fBtRACbHCHEzMs!UA+2 z=d1f`*6PLju3Ap9c*!;VKTKoTRe$>$)LEdEH*cligWaKutxUaKB9 z`1Aa07B3`5!T45tqN3?cI?*EcJmVOtBsR&H>wv$#n0a{{-Ajv+>)4^0HdweHsuZ*~ zW_*zxOIN@Bkiu@zGb)ww%ZD!-5f^1ocft+UZAZP`cQE3Mx-Oz$U0nOIkF2MDLZN)z zd~i#AxV&`j>t9ayf6)HGd|M$3FY>`G9=ok*@g^R&d#;DULPQWZc=&FtXQqr_WvTg_ zc(%iTDg260Gp?T))y6a=!Gcb|68eJ!yVDIP?`zV(X3vc~9A_Wc(Aw_2Ov^lP51JS} zyxLg0$wZ@Ss~+tprKtHV->@ksWZ4qFCt#w-Tq)c1@%_hT&FLDq|(Zd zF(Q!n**%~0u(MZE%_U~VTTE+dAmScBmTUXs4hDyoQs5_!Uqba>ww|r5{kW>;v>7uP z-12JfwrmieKqcq)-}0ut#gTocknqJsDY^885V&Xa)u_qx_!Z$Eh9>nK|0trkB|t-B zeZ1Xc@-jIn+!g*|^R-tmN8|c%XNKWBW(G|Kt}=e$X#mo*ckkXU*Aq|=Zk)tfbF*rq zs3=H>6Vkv0ubDh9x=Fbu52#NNyS%jY2$Izgl)iJsm!?82WACrZ{C~OG?!;Hy@ju7j z3JSsg`03?N<$v&R{Z-a~Ol6QVGx-(sYiox}^`7PR!DAZF0Xn`xjVUDIFB?FloY#Bc z1IJHMB2v0bUVz#>II-H->VwO`um`c9OWeMEBMsUIJj?Ia8l)?IIoK3n%>S^gvl?0T zB-+q$WKt{osRd+S2X!Y+{}Av5RVsY%a+iYIry!>z4=l!bxifu$32pM33FjPG)S*Op z+lEEXYjy?pd^H6l8haNe!qG5ff%g(^Cd2^i_WA_3h6t{kHoLnp>k4n!8K-chi4NUT z^(st*?GJ>$6DwwAsjvSinJSER0K%I61VGz{kWZ#LZEALwISd{)WZxmL1I@(9cnl!- zsDMa&Ms51l>&S|CZMS?4ZGc4{r(_irh*f-+;VL7aBfbPnFe*dQTMxVlEu&+q{p~UN z7eQmzZMYIGNqR3Zyn2#l$f4$tV~*fT zbIM4cae?h1eWj2a6cbw&cw-={>e5eZCIYLpc6AK6*p|a8n68ioRm=-}?c$(qPfvrK z^aUx#%)|JAO@t^6K03}&lVbw5SQ8;~n3YCOVTgj7m5PT9M zs0rD^D|+^0xnrHHpeivAU!KTm1E(04vtwoh#gIsYcOOMPckFn07Q;bNO>=|^98ju` z*iFkOz-(kDsQe+X+yP)Wimz#Ty;*b#SU6*4X-$b)GEl{OQ?;C4Paox%|^m4WK zSd%s2W#~cfy7M<0h7?#XMpNdt1?!xh>i?JEyjCpN4A%F06Eknfzw7OtfSd)$@f*3R zFnM;4kK4;|OG9UoHH}N;Zx)wb^Z?157IG%GsQXm=C;rv7Uc4Et62PVR-i3^99Kk7Z z*N)4$!~h0~M)QKK8TC+T@7O8}H6da2*aX6AY|v!@O)_tkprzopbQ}Z>?xmYyOV)uy z0sBq~%_uO?Zb^d!wR6X;;gWk)OxVM@ZnHWLU#(y$Plh z)vcs`9>Ic!^N*DRYgmzxNS2)Rr`$Ic#&u06LEU*uQZa%vcEAkS2NaCSjH23sYz-FM zpI$Itq9?eP5Q35|+Rq1|VaIIk>nvrzs_=r_e7b&XP0{wV%u7`+@h!`tjgqIkkEE%O zHZ?S;dp>ng75ltiH*+$>{5KA2rBMxkY*-d4H{8+%nfG zeET!bsB;JhwyF~=q5e%6G?1|&+`c?KJcd8R zcI0A|zuL*sh!LZLI+!dj75K7$AK8!D(P0zXd4+FM`{*`3<784e0y;9B0Pc@($4eg@$n-bav1_iU?Uj7Zijm(|Ub2YZ>y zQCC2~Ak3G%K9ko{Q9yoJKFsY{cY7y}L?P!mTX5+#wlUi+dk!))=uAA;v(%e*>d>S- z)QiJci{?tTQ7i@jeBicUs50afXuplVWI|wf38C0Ip&z0hdqDVs^H7b2T^1YP&KMDp zMDjQ5#RAZFDN=yzo!!B}C=!ZbJKRTYC=ANJE8+U?8T5IwQ$-pGCoNC1K3{Lf|3rXy z9z+C;cxdzECS7gX2TDBoi0uxMX9`@5O9wlz7nANUR6Tw%M9AvQy)}vx=epjwb+=SR z;UI|N`lehukrEa1G}v1!_mmA4V70ke3bF$p80UlH?;!=4MS0bJ>&1fu28vFmbgoH{ z-0{-_px`I6mpBMz1||Pin4cQqCxowp_(Z!Gam-NPh@l*+`bLYPto+JK`fbXm6nQNP z)tlBI#7-sNAA702pJ7x&P|VN#g&1iN>2Qfo| zxu*&o>Eb^_9?9W5ZNG1B2bbsw!S7K~#|bZWft2z`kxEu475#!r`=5fm*f$G`QOO{v z2#EeX$2h8L$5U~Iz5=J5q@ww_>M$iSqNpqiEm*jyE|WQp`z%DT>A&7Qz&y{)70z-4 z_Rwko#mv#P$X0733k9uA8grQPs=W(zPGRt%*UxZg9`Wt`h|yDAaCQU1DA9m|Xd5J*wFa_>dE#hL&{}fd=Uc2v$Gp~k>MbLRM?rC?4By%a$M#?zg^@METxPiPS*<)B93pK zn=a=yFw+rMVZBd?#I29|9S7U^E{i1GAB@-uw?=qY2^72?XZ0{XOo$@=$I^uV;k3b} z*MS$WK~#kbjpXcL41o0Z3!huX|5W2}f zTl4>n5b8f1fcZYyxdc0YDz=$s-qSapcSX1qUrqTs*)1w8D0ppo+U4D*$yS8d?3cx2 zYQTu>s86E=Hpwh-;xQ~2cpm9u&X}x{9+H@A*BNW^|DDV?I6E^pH`BY;;@w^8>y;DW z*u;25e*30X&VDFI+hQl+j=^%#pJ#jKcT~`;{#ZW{)xn4++kRz~6a#4}0OjRB&yw<> z8Km{fDJFF*7}&y&OO=R+#s$yD*|(=i2LjhVJmB-%+n`!885p=)OLglkciT3-lM*<; z-5O(g4PO3*;P}!}+tL+B9vKra2;APn*8VMnWtktX&Ql^78JzcC58P~owSVs27KsJb zpB%eo&nOM`blg}jSC6mJlbwy{tG@Y=9QLNEMK10A(%1_~*c`o+7h#-}FoiWWp%1~S75-6< zAg8J?8!Cq?zU#Cl<0oJdB|*|rP${(skIXGL#u{0{>V7>rrM{xotYW>jw^J!|lLsCB zMur1r*48Y zv@O1RHi^s(Z7^#grByK*3%mbdE?n&E%#>9@mQvM>l)^jrRt10m)n}7N1=`dPeqO!j z)p8ri1(w@dgaBJO<8n*RDSk8cUH}ogRi)NUm~9E2ejqj>~x~tiW3* zw5d>()Mu^*8*6J;D^zn@ctnyLugv+(wINQMR{Jj7#Z@bF5oQM}h(<<)?(Gp`fuEh$ zn}MONS#Mlle}_9Ak@IY3#^{YY0waUpFb#ffsip#e6}Y)xXl%j-?$*WQbUD^Usr zjJ*c}KVF|d#+fuXsg<(XKQRK9l9DMrRgV!(sR+Qm*ed>7kZr|MmXWxuMnVO5bko&?NU3 z8RPM(s;h!}r^R|o1E6xy;WxGLVe!1cO6;rL78I*6ydw zy6J-QJFq{lzX$6#oJa^LVqVb?fp=HT6*ay4Jk{*IE+!dEjGOB(o2zxHP^+6-X200I zyBZcwOq^qk6~zqVjm)Q`Vwpv^bADM3cYW6b4@WdgQSFDOQaw~k`EuIOjO^#&?j-k* z*RKhE#JNSaTQ3 zy$-jHZp(^)e%6*DWaWA=)HqAa0(Fu~wRPN!H_YAM$a~6-#$aj&x1A-`U9s3+J>$H@ z(n|!_?G>p}zo@}!nxjf|F;2Qij4&q?T% zFPolh27IoL?MSvuDcf&rdq?XJ1bl{ty)%Xxp5g*Yeo;7*Sm2kIB)PBt>ut_+9SIg3 z9z>Jr4c)5RjZh7%fOmV~j^v}B%{~#>FQ3sMX6ZFME0D6@7U4Cib1y>lXo#`WvoFCn zkNe;vr^s*220?nkg^;`zW#FSRl)ilAzt2HN?)(QXu^9<>3!eikV~9@ zRV2PQNO3A&^5)9=>dI;r9gTW$g_-|s+o=xGDi?BSMyv5KyjDXa^7_{Ny_x>9A=-8z z)b@!<4e3!56szW)V9F(1Oo{P1uT9+fk`ln|iZB=83w$eJxw?6OWT+Xw0RAkM<>22E l6lFrS{l{me4ux)go!T)G*&h-PG Date: Tue, 12 May 2020 21:11:07 +0530 Subject: [PATCH 29/30] removed duplicate entry of %windir%\Ntds\EDB*.log as per user report #6700. so i removed duplicate entry of **%windir%\Ntds\EDB*.log** --- .../configure-server-exclusions-windows-defender-antivirus.md | 2 -- 1 file changed, 2 deletions(-) diff --git a/windows/security/threat-protection/windows-defender-antivirus/configure-server-exclusions-windows-defender-antivirus.md b/windows/security/threat-protection/windows-defender-antivirus/configure-server-exclusions-windows-defender-antivirus.md index 97a45e8794..78f6412fd9 100644 --- a/windows/security/threat-protection/windows-defender-antivirus/configure-server-exclusions-windows-defender-antivirus.md +++ b/windows/security/threat-protection/windows-defender-antivirus/configure-server-exclusions-windows-defender-antivirus.md @@ -284,8 +284,6 @@ The transaction log files are specified in the registry key `HKEY_LOCAL_MACHINE\ - %windir%\Ntds\Ntds*.pat -- %windir%\Ntds\EDB*.log - - %windir%\Ntds\TEMP.edb #### The NTDS working folder From c53a548259db7400f37123793c1245cb958b0108 Mon Sep 17 00:00:00 2001 From: Denise Vangel-MSFT Date: Tue, 12 May 2020 11:59:23 -0700 Subject: [PATCH 30/30] Update configure-block-at-first-sight-windows-defender-antivirus.md --- ...configure-block-at-first-sight-windows-defender-antivirus.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md b/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md index fb691c6dea..d74cf4da9a 100644 --- a/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md +++ b/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md @@ -22,7 +22,7 @@ ms.custom: nextgen - [Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559) -Block at first sight is a feature of next-generation protection that provides a way to detect and block new malware within seconds. This protection is enabled by default when certain prerequisite settings are also enabled. In most cases, these prerequisite settings are also enabled by default, so the feature is running without any intervention. +Block at first sight provides a way to detect and block new malware within seconds. This protection is enabled by default when certain prerequisite settings are also enabled. In most cases, these prerequisite settings are also enabled by default, so the feature is running without any intervention. You can [specify how long the file should be prevented from running](configure-cloud-block-timeout-period-windows-defender-antivirus.md) while the cloud-based protection service analyzes the file. And, you can [customize the message displayed on users' desktops](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-security-center/wdsc-customize-contact-information) when a file is blocked. You can change the company name, contact information, and message URL.