From 58c0777b4a527a56414c716ae51e2c071b2237bf Mon Sep 17 00:00:00 2001 From: fred_the_tech_writer <69817454+fschillingeriv@users.noreply.github.com> Date: Tue, 23 Feb 2021 09:39:35 -0500 Subject: [PATCH] buncha fixes (#419) * buncha fixes * Update migration.md --- _articles/faqs/twostep-faqs.md | 10 ++++++++-- _articles/hosting/environment-variables.md | 2 +- _articles/hosting/migration.md | 2 +- _articles/organizations/policies.md | 2 +- _articles/security/is-bitwarden-audited.md | 2 +- .../two-step-login/setup-two-step-login-u2f.md | 2 +- images/two-step/twostep-remember.png | Bin 0 -> 21262 bytes 7 files changed, 13 insertions(+), 7 deletions(-) create mode 100644 images/two-step/twostep-remember.png diff --git a/_articles/faqs/twostep-faqs.md b/_articles/faqs/twostep-faqs.md index 531b2009..3d51f5b6 100644 --- a/_articles/faqs/twostep-faqs.md +++ b/_articles/faqs/twostep-faqs.md @@ -22,6 +22,12 @@ This article contains Frequently Asked Questions (FAQs) regarding **Two-step Log #### Q: Why is Bitwarden not asking for my enabled Two-step Login method? -**A:** If any [method]({% link _articles/two-step-login/setup-two-step-login.md %}) is enabled, Two-step Login is required to **Log In** to your Vault. Two-step Login **is not required to Unlock** your Vault. If Bitwarden isn't asking for your Two-step Login method, you're likely already logged in and only unlocking your Vault. +**A:** In most cases, one of two things is happening: -For more information on the difference between Logging In and Unlocking, see [Vault Timeout Action](https://bitwarden.com/help/article/vault-timeout/#vault-timeout-action). +1. You may be already logged in to Bitwarden and only unlocking your Vault. Two-step Login is required to **Log In** but not to **Unlock** your Vault. For more information on the difference between Logging In and Unlocking, see [Vault Timeout Action](https://bitwarden.com/help/article/vault-timeout/#vault-timeout-action). + +2. You may have previously checked the **Remember me** checkbox on a device when accessing your Vault using Two-step Login. + + {% image /two-step/twostep-remember.png Remember me option %} + + If you used the **Remember me** option, you will need to **Deauthorize Sessions** from your Web Vault (**Settings** → **My Account**) for that device to continue asking for your Two-step Login method. diff --git a/_articles/hosting/environment-variables.md b/_articles/hosting/environment-variables.md index 0f91ef5e..33b29cd4 100644 --- a/_articles/hosting/environment-variables.md +++ b/_articles/hosting/environment-variables.md @@ -32,7 +32,7 @@ The following variables are among those that already exist in `global.override.e |globalSettings__mail__smtp__ssl=| (Boolean) Whether your SMTP Server uses an encryption protocol:
`true` = SSL
`false` = TLS| |globalSettings__mail__smtp__username=|A valid username for the `smtp__host`.| |globalSettings__mail__smtp__password=|A valid password for the `smtp__host`.| -|globalSettings__disableUserRegistration=|Specify `true` to disable new users from being added to the instance.| +|globalSettings__disableUserRegistration=|Specify `true` to disable new users signing up for an account on this instance via the Registration page.| |globalSettings__hibpApiKey=|Your HaveIBeenPwned (HIBP) API Key, available [here](https://haveibeenpwned.com/API/Key).| |adminSettings__admins=|Email addresses which may access the [System Administrator Portal]({% link _articles/hosting/admin-portal.md%}).| diff --git a/_articles/hosting/migration.md b/_articles/hosting/migration.md index 3a6fe1f9..08fe88e9 100644 --- a/_articles/hosting/migration.md +++ b/_articles/hosting/migration.md @@ -17,7 +17,7 @@ When migrating from the Cloud to an on-premises instance: 1. [Install and Deploy]({% link _articles/hosting/install-on-premise.md %}) Bitwarden to your on-premises server. 2. [Download your Enterprise Organization License](https://bitwarden.com/help/article/licensing-on-premise/#organization-license) from the Cloud Web Vault and use it to [Create an Organization]({% link _articles/organizations/create-an-organization.md %}) in your on-premises instance. 3. [Export your Data]({% link _articles/account/export-your-data.md %}) from the Cloud Web Vault. -4. [Import your Data]({}) to your on-premisesinstance to automatically create Collections, Vault items, and their associations. +4. [Import your Data]({% link _articles/importing/import-data.md %}) to your on-premises instance to automatically create Collections, Vault items, and their associations. 5. [Create User Groups]({% link _articles/organizations/create-groups.md %}) manually in your on-premises instance. 6. Start [Inviting Users to your Organization]({% link _articles/organizations/managing-users.md %}). diff --git a/_articles/organizations/policies.md b/_articles/organizations/policies.md index 1ae24575..85244ae1 100644 --- a/_articles/organizations/policies.md +++ b/_articles/organizations/policies.md @@ -99,7 +99,7 @@ As a result, you must disable the **Single Sign-On Authentication** policy befor Enabling the **Personal Ownership** policy will require non-Owner/non-Admin users to save Vault Items to an Organization by disabling personal ownership of Vault items for organization users. -A banner is displayed to users on the Add Item screen indicating that a policy will affect their membership options. +A banner is displayed to users on the Add Item screen indicating that a policy will affect their ownership options. {% callout info %} Vault Items that were created prior to the implementation of this policy or prior to joining the Organization will remain in the user's personal Vault. diff --git a/_articles/security/is-bitwarden-audited.md b/_articles/security/is-bitwarden-audited.md index 1cd3a708..9e48e27f 100644 --- a/_articles/security/is-bitwarden-audited.md +++ b/_articles/security/is-bitwarden-audited.md @@ -28,7 +28,7 @@ Bitwarden complies with EU-U.S. Privacy Shield Frameworks. In addition, Bitwarde ### HIPAA -Bitwarden is HIPPA compliant. +Bitwarden is HIPAA compliant. ## Third Party Security Audits diff --git a/_articles/two-step-login/setup-two-step-login-u2f.md b/_articles/two-step-login/setup-two-step-login-u2f.md index 975fd790..386cfbff 100644 --- a/_articles/two-step-login/setup-two-step-login-u2f.md +++ b/_articles/two-step-login/setup-two-step-login-u2f.md @@ -10,7 +10,7 @@ order: 07 Two-step Login using [FIDO U2F](https://www.yubico.com/solutions/fido-u2f/){:target="_blank"} is available for Premium users, including members of Paid Organizations (Families, Teams, or Enterprise). -Any FIDO U2F certified device can be used, however we recommend a [YubiKey](https://www.yubico.com/products/yubikey-hardware/){:target="_blank"}. +Any FIDO U2F certified device can be used, including YubiKeys, SoloKeys, Google Titan, Nitrokeys, and more. {% callout info %} **FIDO U2F cannot be used on all Bitwarden applications.** Enable another Two-step Login method in order to access your vault on unsupported applications. diff --git a/images/two-step/twostep-remember.png b/images/two-step/twostep-remember.png new file mode 100644 index 0000000000000000000000000000000000000000..a3cf975236fc16bab179c02f13c4028c34a27051 GIT binary patch literal 21262 zcmdqIV|boX*DV^`Y17zfY#WVjH)w1-X{^RcW1EeQ#m*n5 z+?ZHibB?i|P0=H`>EG#b}EKDeG zZ)0p`X#@fy9-5E{tsFOq(ZByZB`ib;iyDpQj-H1uAb9}#DbK$sfHYcONE!yt`G*~( z8YHUO5nM&s*G3G1IlmBtZ&lejbOSj#W#N!GRL`JMl`ZG3_hT*l(t9q}XDdxEV&67j&BB67$j1789lp_aiD~YB;Ljt^jL$!VFC-9BVR&M$AlNsDR!<?m!=M<0Pc}gHA@=qQy!tsnxi{FlU63?>3#(Wrllq0HSAv*7 zl30$M!XONiY5juow{ZaFon)+gO<@vs`kGn>cJT!~B<{C2Tz!$7PbQ%`dooottURV% zeOjA|L*1Wl;d|b6r=OoF-Q^Nr^S`5tRk0~yqGlbWbL(^njAV>ahAYhUeR+70?H8fi zB1_f{Ya=zw4s#Vu>FA;#hEppW6`|X|S(5L?DzF6?F2oc8Wvhgg{R_$gMh*iFMhHo~ z^W~6CsglN_mFOHnqFye8j2eZWeGgBmhP0N277j??`o&J2D-PQw8&Th(+4nyD z9j*?sHTlU}`YMQ@1)d-?1k%q4E?@$JYhs2ta&)69H!`iP2!vp8S>T9S;0Qk{D@Dwm zAS(W%KllltfDsGOs6)64z)Zz7C;ENXqaA<_)PrAuqWViG4}Rw_ya8hhM$xHZ3#tvu z{ugfo+`SXT6*j2Tg8@zu1&LUgMI3x8@E0Nc0EU6!Sv378gh0V6d9ZkdP$JG+Fiq&s zLcQ{kwKye#-a)bgCfQQ*UmOXJ{GqbhCrmIQ~km;(0RS!1;#Ok-#1E6;Zg)RG)@{ z4ikwSD(;s?*kFIW!JR>*;h5o>9u&iQl{yW$g`ZOwl%8P~<-+bl!~)&|lqGdN{Bjgt z=cX+-2Yeb19YlYx(bkpSZlixAb7N{F=!#e?n(h~y@cZum&E5xXPs%rtHT*1Cp5mURd3kw%cFI`3 zOXSsx7E2#iPJPSg%aOwIjE2ZycD!PwVuezWG7ME8)f$y{f(lgv6@_xM zim0+#30nzK$zchO3UZOIqL*y1LPT-9G9PP{rZBJAX<@c06pIaZRDEQ9uyY2RK>w7? z0j@h-TeNq`ngoGrZpmWlw_;kQQf2P^xnTjuUs$-J*oMs8Fxzz7*9fOrCs=-1IL0&M zjhx&5Pts0uPQLEG?*31Bx8vB-h~FcWBZwo&Bg9fnWgJEyQ>0j3%roY3QzSAEx#HMs z^!8$sk!$s69m*NXcQsix)#^lRooZj}$d-1O_G^P3F}X6hD7nbE3Z0;w%$m=diC589 znVad8%%$0wBQ*LfO^}Yw4j~T)Z=H{wjv|gy55$i4kJu0RnFz5f5n>S}5ta~w5S188Ys5Z-EJKC2bUF6NVEssSS9`Ej+S1gxGacV{ zwhm$s?R$2S)uiT?=fNw+_mf6YM;4h2*Jaitj_a4p=hF`}Hr{eQ{sd=0&*v^}hZg!$ ztULVKXRgQM4)ltC9U5MeI&xY$_HPKkmpoS`h>z-!^OY;4pJktF=(?}UZ2w;UJ$=2h z!~fm>eGWugKwdyWfL$!Ldwa${2s|B34XPeG#;?nt$}a;V6ZTf|#p; z`md78p2}7;!KRr9TL)`Ni;UEU6+PyCVFsz&wss139^0ZA4|EIldW364eEe@`LUDn^ z7`mEyO<%1hi+kgHS9-s$Ow(phJt6JXS|9H%_hwd4@=#a1}j;_o7JEOF@{o@4@1ID9(rN$4f?@8d=N_Cyh#m zdxk5FQ%!6Jynk;eUQgTK*sopHe|D#yt2oda)NS(kTuWuAvTW`@>sAUq_wZ-2<98#Q z(`lXd@ygbU%W=+p-HzFQ`QY*U*n3N}=dP!j_r3f4ZA-hD5B*cSga2yK72-PF17sq6 zIlL5nhvkk{>x=&=vJw9;E6JsqrbWB!G1>*%En1gwp0K+wr5O94?rqXr>Z$@X6y>k1 zm$$4EB~PVXtSGD#ZO&=o=`85jY1S3r@`cpx3a3h|vn5N-g=d5DUhvpm+|SC^^V>>o z=l2P|@vkkPcC=J2H8$5mX~n5rJIc*uL}se<&z{Y$Xf@s+^If*Dz3M+NTcn#?Ae-VX zXhY8r9z!Ab5wzM3?8`f}8NHrCi3)G(+p2p%^p3;wuk)fg=AC{$HhpExHB{+0>xakA z?mOw*B-dB6aju*QI&Qv-?q0YCf%Enw{4=qixsWxXWtnl-gx)^{^So?OxZ#)8(A^t!@8)`mDn{ z`c|*jWK?*h+fR%tN|L~Wx8iN~WIjl@e@)4Y&r2;cfdBAt|F+{r=59IBx3zGmFn`=J zbC$2c%iDg!=Athgk{(J|Qa2K5_r2oDW0rbat^e)fW&6l>iyW8 z&a(Ky!1n#&xfuT^&zXnDcl2YW{{4gTanVHYPA|%5^SioTt%-(U!$U(uw2F9cB1rjx zpK-Aut~JP$163ds)*u4f48>Ix2q`agNrV@fu8P5ONhBbws~{pY(1Z`zAiJMK%D!DG zMceqx!)>`hR;H&LybS-4aITMQ62}i=absb-!QVWQC4UE(!jAdj% zsDNu25HL_Q5FiW&0R?_Rg3Ul6{#}EBkOQ9}AmFh!PLglT{*NA1O$xNOj+GgT}GPA(8h{R|A&o%5uK}*?S~2o zk1H2&X=UW7Pv~l8Y3;z}%1iuDf(y9*cuY@B_)o;qf|pobMxIdE#@>jKm5zmuftU}D zkdTna{)aJ_qKN2!sRMVs#HNmpwp{e|E-o%~F3fZ`_9paVLE$A0rR_|LNI($@9>EH1Pk@;Q#5(e@}t#K^O!?07ODW zP}vpqR0rBqx%ZCmFd8g7a7{r#1Vzvb<76C+3S%Z%M}cO+!(-ud=BfU@&AiDuUk?Sw z$=5JqLcbe)7*ZnG=;rt9QKsS1YTiL>w&(O0w)?Y{;`I@4hrN-N{m5+yASN6}xFo%&Vn_ z8sZ1{MpL^HCErDU!k~Z>%R@sjF*B3py8Tw3CH?kEN<9F%nx2v_J}nJ*aCkWUs~{9H zP#PE%-vN}bbac)Rw!^BZG2VdGDE^Pk^mIH8Ypk#jI|2~IqJQn_8#%~GJn@l+gOHhJ zhkw(O0Y6&^%!L1{1S1jz()a}zw^)LgrYnjj9O2tXy$Qi0Kta*G4T~W6d_N4KKmzTc z0Fo^6&nPxH80kx&Jp2gwhY3PBnCOdK5T>|~7J^}c0wg1{F_NGG?;!%8PzX20K!1=6 zepod{03>mQX&I3J75*!sKvxvlfVAI-hY3tTl08UM5C5Ng1%aOd1d!3m5FZ}07y(He zgu1^x|J>*N1cBv;BV>mC=fMz=T*ox`b^GUDC>l~CuKD?b|{`7FAtZonVH{h+=|P};vwNN26DcI3q@W} zNzo@b9nWFCPZ!E1mXwra=?mX}VaZ|ODbs0DeS12lmka3)|1zxOvTDTe@_N5+)b|T3 z!{pZPx}U&jpf3XFn4|-O9sOgYt zXlV2yrt9eJWO$s#99Oi+F4b9>8KQPiFxaJpa0#AU~p$JZnr2mGIp~&csKwS9fJHT^}5%6 z`Y&A0sUDZ3;=-Y+e5q5C@y~8TSQEvNBp#+c6R|NEdC8@4MjX2TK36Q_;8G#8S?CoVV?VRumNUZS3L75dHa!OX6o+C4zO{@$Q|> z=}?g7vgSsPH#2vq}u1@X>SSW8TOBb@CV7m<1?EQxI14uAM9ucalH z0{53d8{-2amJOqL_pn*b<1OaOG%A1^t<>#jcr?GgT+3ZsjwCVeJ^Lf`9cVV%W=qKs z^x?fLGduC#&M485Nup<_*o`oMKco&#G1=YSC2t4x#`4+R=E)MZx3Jl*)7IzepPvkSexb@xXDKwv-fFSBH=yplqT|gy&gS`b)n(o3wB!8^>fN>~jm0eXcq^Qq z?eTFln1IJgNmX@kil9Y`)idr_N`rQhL;PvtcW=hqX3IsU>yu@h4yRXOb~zMd4LR+n zyEKbN;ajcL`Lpi|r{}aQ$jGqYYz_b%uoIbm6I{907v5ZYczaZif_fuglhS` zPj54acgt-uhMVXtUBJWks&|V4BbCZ`G>OBWe$T*x?{zat_d@5$H~5)`z6d)0%PH0= zf|K7lP>3e@Q*p5>^7H!gg_~JzP6J) z#@s)-KHS+7@-UaLcH6#Oy{e1rT2l_@XSndLRbfYx*~3I@U3N-TY?A5ry`%3$T3yuu zUCRk^KfXuVLDVph#bi!kQ&&$+YO2MV{*`V8(^A3U4H%NtNGpyj)3fguii+adR)5rosH-m+TY=T}o48kPa5m z@+(MAOQWGkcZ}7Goz_BOmzJCefI`InQEOrq zrvlr?OqoWF=6Hg9MDgIB2JE`2-GE`9Ix+uPv*41fZ+(;kwkVHq5CY@vQn?oUwh^!< zur3iw%RiqsWKK>cY~&dY|K8)Q_zHcs|LGUPPf$@dQ;HBA2YTlKkdC*d7-oDQx0*A| z$4-`@NiykZhD1TXSuF+{R58MptaJ-88aFpLQ7vfiw=2KKpPaR4x^3=*l!a+v6w_yu zZ;VfZ&vvqv+iuJCR^KEv*F3LfJXv#j^1!X|Nx*7vssFSpIxm?~Ov;LIIUW%HJkk|oOXT)7tSdOCY5n-$tD{>TJAdWdRTTt&>n zzM!OP+F@xQS#NLeUa(Q-wiq~ZKk_JC2qqrv9`wYZo@;nEm$yiXmzK?57!o+%ug^Z@ zgwfsBEvLpK{1j=ne#tn0g7LRMC zSTc;VO}5@)=uAK2l+zxsx-QDM4)0eU#@(Hrq}FBG&sHdQTnSXiSn0&x;Ym2c`yKad z9;tVr`H*DkzpvT)LLLy5TA*fKZ!f^S$2JIbMtZJOa)dZ}IckDV)_?1T ztNiwI@U#4(RO}g7&ByI{t*xaKVmR0;O?*6(27FfQ>*-W7^tnfLP0cC9Fnm|8aD+$} zi$GjvLGA&iQUMJ45D~A(T^XyUA5J{@S3Hzow&|x>*HUX}aBpk+4{iFWMZB`s3$^CG z70$ZC9E5nD48M@cF%^XvR)RKyeTgVp%uFXjz}1rYgixb{mb%PYR|GbZcyHu|sm!Op z>=69eNCT6gX0wX=N@ao9$Z zLYHdIYPubcCvwG*;|lm?u=ZeITp8p0qj40~XsnjnD~i}nhmxY9D7V37P>00?l?fG0 zPvrPt9m_Xhz)w73kA(Jrj`R>7ZC&;g+{bq&`uJGCT|p_qgveXX8!H!HQ;W9nzg%?7 zDEl6jw^t$j{^DZ<-;0L_zXU?QPQ*YWsHZE;n?0%@fJg=n|LLR%ZU|~c;OPPJ5H}vS z-zNeG=xn|L6n@R;&M**a+0(w}&9H1LRYbiy=#vJNvX!3^_an^XEZqt`@VC34Su~^h zwyH~sPzpP47<<|t_fioV^&>&=+|E^4*z`ofF+}3Q9$m6If%x z1d~YWL}a~-?Q#M;Wt;;m2NU+$t za8&MuFzSjL^@yDf>Sp5AAu_17KZZ_6WYMGPydlH%{TpE5)6@R)U|$OVyM4={S^pFG z=%R+$SMH#9S#}(#blffu8NoZO3e4UOPOjJHus^LtvOCDmw)=SOp@yk8Rz_BwB1?#MW{kA$@?p2|t zKk&ahx1c#)rLwAX(P08uLkjo?@ZGKw*c+jTzGs=hXsxS5Ng-w=RffQ~k>!x()f`q^D5=I1@eg?LmJ*QYq`-m2q&OO|nJp{-jQYkYepe-s zZieRjAO_?~?@j|~|1u*XA>a;8`bOkmy5j?6Vwc~8X+S@6C_+-;j;K>a?q6c`AVzow zOTcZt6)|TDvu2NI1Rr9$6KM9&NY^*QGnn<~kZuB>7sj17hb~a)o->{eP#b9jL;C$7 zoy{KTj!73DT6N9?YYp>{s033f3ol!O^!AT+R) z`U$RBIUk8%Zkn-40D~S7ehOK`2*v?T z6!##0gTT*|nAg#qBkD6wTDF6LiEp)miBL}{En4(koE#q|5T{lQLSF^1@}2t9Gl2T` zRE3km;BsSfL3(uPwfx{clfQB0t^r_;OW1Vst3Xs(Hl6OXi~(u}Uqb7&$uLhtHE~PR zAUsq`psQJQAPj^a-XiPZp=x+hVR6_v*?GF>$_O)^rsgOE-+<4It>@ce^MO{>%p z+0KMC$8_z575IT zSH7z_Re=l{pvVt(0a5!5!urp8j@k=3Si6(VN|ysLEIznIp|YUkjEX}0B1AwkZ$^v~ zH#*(LIX6~(`dsRlEgbBQzbFfel#MHKz$1y2XI5t+7rI_f^gexf|--3wPOz-7h~S3}@M{*vfWa z1T%W=M47%xu#a?_JHd2t<16e`CWl?lAWkGL&q-ysxm)k%&e!|$hBfn*7&hA)u+;a! zFS@2vP;+;UqGk478U==ZzZlbh-i}iPbM!JoVC1elxc=~5om(L6Gvk{qmykMOSgru7 zBO@jnD6!}X4M(XJ^Fp>TbTaCzrH}YMjcp0h%yMpCc^1o7uqyF^M(p4a_V4oX! z+A=>}=9ICoQOrqME=qP3zf&kzBNqj#NFoXnM$f^xgvN@vUcA^aAerD+TJmEpti&`i z@euW+rUrfj?-j*U9S$XyR1Vh}ap<`T*+r=Bv?v2_;fuRWd1@)Y-n1f}_7eVi%|m@~ z)@|Bs_lGui73W`qjO5xBu7O@WU!%S#mY;<3`;Sd*G|*wUjlW|}h{>_7_RO@5ZiPiRBCjSi{QUtIK9$Nwq230h#uJbf1<}YeP zf5NE^RE!Ix{)GcvAMd~W?EY1km{D3&RwaW*9*G9JdgqQ^%0R{Xzoe+ZCQdrNHa>)4 z_{qp5N=jFaaX&RWR2)#45B9@-|Bu)O;RdOPtwAlBIeB_}`ZOs98OwXM?nC! zCHgmJV99s5w=62w)h81d!D$lV)G8Ukpwr{ z%h;e*o|t{cjl>!0t5UN>;!b^R1s+%+0PsHuX9>a(kha&7e>YYhPyAkjF=R6<^&=3C z_aJ@B6;+@=oU6oE#Voj0v&zHqFP_@TUsxTXso8PX1J=^Nq!yl%v2y#)> z{hl)?7?T`gFb0hcWY?^EL=p<-tQb+D!*R;1AF5MeeXgsnFjgve!+1zmY7>IfCaWG( zp~;=TPi!C5A=P;Q`mti^LL5my5W+^kQh)wF5I>ZxSQJ+!>-*ZECYiD1^*r!1{;UMi znW2PB~+ayLxJlXJB z-`nsgV#HSm*#|tgC7{_?(uxhmzrh{Lz@1)GqT`zzW0)l$_h~N`3tM`WESvjZOJo!*c}%R;1`H+(Tx?Znh`OM}%O}5385m5z$4k8v_$bpy z!ZkCXomwxy-8lVo+(y)FRSslb9LrCvTRT*qDgYD^0K4R=FjF^U!^9=ZwM9!EaP6JMT`ijFp&Za0Z~?CmF!6MQh%BF zsMX!wepd8#LeP>iq6p|1LeA0D?RKYu3#JMz3*a0Uv%TA5n8hBT=dM=9R|ykZcJ)^z zF2EpqY^!&QoL0uC|A?k*Loi~Mb#kgxRxZ*ns#Y{NclN|#=j7Cwnwlcz<<+^L_`~}M z{f@(K%_7nLJsg9Ul$G_wV4+NGx7l=(_=5`hAV)$a-6tg>oFaDXUHc6LZ?VTA=$4?C zV3s87&#JMc#cw)Mwj7A%`C$S^<1L&dR?yNbovZ_b*iE4iWW&^(zl6od#}7Q+9ve*; z$OPTAb^ko6sj12LdcKQIEfq85%&V-FkL1{biGt?}003rzv-amRQK^@KYqjrQyMqo& z&4TIMfz7Qu8qJ!e3!f0Jz`1h`xKH>%VKPP5<2AvC(U4&Rd7?^y})-C0@qG#8iQAYVl`!UWHDc`MkfnG(BvE?@r6{C*($Q z4e{-vfNxf7yKV;VEq?Gyug~|1QG8G0s(*B8!J!bMQ*GKc&YF+ul9^2+PwJPg?GN)4 zhyMD4^L|SLqGIU`9u2)PuFU}Sf5c<_PQ5+!kb{Osa+!A1RQzR5I9)9Bc-d<;swj_1 znq3fKB&}Bc06@g;43I>{bDuQ|UtM31!oWOQtuDQ)mUPteU?E;ZIYqH;d`ffs`QM}p@eG`L;w4SuAvkdTn}-H7Z107FOv3@=vFcR=%lRLc{K!nc3i zO&pe>NGAoTj*Jz@X&EN7DN;9p)!G3-K(YFfwB8bx(qGE}#R<97ao+ws6ip=TxAzFp zqw#I`Yg)iG;5=NaD-9igM0WFdy`7gy1E?PRMWe*zNJu>S^R>3!FzSlvDE>EfS?<%? zpJtrf2>bZ|nh4j{zaGp?JjbWRvzl3BZ5|zLn@My=N%~g-BM}PQ=C-;}n)2?a6Zg=F z38Bv@O|K8|;9ZC!4}_}HPZc^XbEY+gY4%~EM>XSoacy@?QXkm+HQt?<>82`m5Eg6z zvS8BTbRmw=$y|Br&B@|4%FTD5S0iz+qnTnR^O>)Ps$JS(1L)XXFa*`WFmx6D9E|6j zBw@1BXt%crbiq!n6dmLJ9RayjO?CB%DM&7qr@%w!)i1ZO=kt#BUtyNoYiiM)qTDF) z`5yOY8Lj#dKgSTf{qlG5Y`(64%oSNd9F0HRW^WDl&5K~2?O4Y*N(A@!zdN)DCK-_E z0W3)OCriv9eRMt~(w=_G%I$)K?;L0$Bf_C3Cks`^0U+fb9j|xSBai~eeN^~TMK>yzf-)?d?aX2vJBOa*?8`Ykx?8?S8p_xgH<3_|vur3(g$#ImxO_uP*u&W+O<# zq)fEh&sFeFRS)b5z=}ub_1y4TOyvct#YkJunoA>=MyxnwB)%51MnOsqqf2127kQjN z;?%|vui9Ow51s$eoF&lj5&iSAv3~-ld3)+goJCA~3wn|25;Avl$S@>ryVY{N{oSGo zP7CJ<6QMK8`9`OI#ObQq4#Vd_;@@e1+Mmp$WY)QH$rIAiiqLDM6s(@$ztG(*+#i#S zueo)?3?@QI4XY*TSg}pLaH&m{hq7+1G%?59J#~m+GK{qmGl* zsuX0fwpQn%I0pl`M^P~GM2|j`@9XN9;#}~b95Re=TY-JQLKi~(*%W9@z|^7n3IZa@tq zR5e368x^K6LxENqERvH;mYenR!QYy%4+O$?rzi*^9-kuHKyDi`?m)YhhU*nm3}8{m zx90O*pWrpz-#r}Q#++GyDX#7T|@B| z5d`@io~G)i|ApNWvBSSzW0A6{F2w)B?u;_BtNT!VEzYIg9-`VG3+jhWom(M43h{5_ zxj^mg$*#Wd1b#@lGO290s49OIq`dYx)s2s-X&27^&B4Rg(}_=osckmm5$gq=ACLw& zF$&-2@kMK)bxPnW#@1J!w8&4=0&GsR&HnkF`;&qoHq$w0lTc+@RyX2f z@J~$mq3gtb)c@J-yninlT{e5Fk==c3E=0-`brJ6&n&-Ix(&o0F!%W*}+U$(6^mM%V6Z?a41{t&(p0UZ>W)QcGPFFI;%V&()6TM4|U zFnj4XH)#sE_7M(pZZMKMCHa@Zy&003DsSdTD=Bx;$B~0g1y)%RB2=Vr;xUFC#3-1) zmGhe<&5kWQ(YJS8SE*5x=SxgInI6ddjF&-^BKYYbP zqFWbRh5)K0uG5RgKYuy@St5u6%o>7t>H@VkSat?qK5kESIPbcYY?muDAHnS%DSD>an{`Xa~{U_^zT zw8Eg{!!LB&2q_6>(U5KvKG?E;GthDsR=gK&k!Ba3d%+QdBR6W$-)i88!RC={L`AnjTTmVTj=5a{2AWDJp>x#kWV0(4Y%i#L7`>rF%MPh->xpPg^{wPJUaG9e7Qr}Ab3Opa*b`iD%% z*y=&u$@kYcV^ZoFL6hCV==G{3So;UH*;VR*MSks(QgOHyxWbzCNuK2xgVo$wi1u1S znTDFc$e|?k{(v^KNr03GTH{{kjJPnLfM!A6N^({@$_;uEMDRtUZ3*c58XLP$__AVM zzE}&w=>Y`pMy$1RQV;)v-?FLe@JlFK-4gp08%sXDK40S~Bm%3Scn#lz)QBfIP>Yy1 zbJYi*f^Y8&3kitbnuWJ^N-_}#g|%wIy8b2?jycGkGV5-`gE~$nWd)Anlk=M1kv>0^ z2=B2mq85GWf_8l9yjMQ;a(uEitbc4hQhU^O`KFy4*L1gA))UZp7?17r%jr(tJ#>~M zDJvpqwEd89AQr`Ufmq%qz$P3N?C($-UkNBu@fk^nGVP2Cx73esqfp~(+;jAQE`34n z`Z}FqUHviWSM<|)Yu!zsJ~Fc{XkT{<&rf(FKiia>5B0xz~Kvhr$G zo^_Nrln4=cA)Fut%7tujkpFyiGb5L55nl1MP{j5kl#W6ZgZ3Jkz^g*HN(>~uRbn9I zsWW+>m>(m%r7os$>$}gg;!YM|A}opxzKe~3q87n}Axb{584`wBo>V8#XfVx_OVDrH zbA`+BXy5WMcLoaqnAI>kF z6!JzjMZg9?$_Aj6JrzE`0pq?90AH0UkT9A99K4KP01gMDx4db%e}HKJ4^DF06Ok(0 zPTsF}Uk{BGbq95r(2L5ywH0BRNidn8(>&h0`HnBGwz`GyeEB4yAYnFhJph3Y?Yoj@ zX|~R$#>AZ3UpApY;TipkvmS5i%h?#BQBEP=wVO~~ULN{=3VM-Vw@P$rr#{{{-JKkU ziN=@)MZF_?p|(y}hr93BP3~Cp#L4Opxl=xj2)e2%5gaMDTnV4uAYQ5L!H!1@&Poe18s}}`yVV)1{dfF^gntS z|8Oon0Bh7Dbp@ynAX>5m#1x7)PK*cbd!lKY%$2FJIBBFV+KBS3!aunkH_I}eg{%aH zWZ1DWLa3JOQd6szN17G$J-C*vT>g!&)_m{oRFhN5$rSCX@ZH26w4+?2ar5~wJ^XOK z@Z(JTv0 z2N`{<`y;h;H_z_6ayqKu@nf)ie^&yY%u)PXf|RwFl|K)Aow~r?`s%#QoMjmr3Ugld z64|(?CQU`;+w2k=J`{{;T%>&u5VqF9X_5k9lnN+ryCL$OG$nc5e9S$_g40X_p(=kB5KC z$$8#;zkt!+=P#jfdqZevB_Ku(jCP?zw8mQli7_>`v{f?Q`O) zdn4<1vE<+Ooz5z^*l8Y(H||_z-BTsWqFS`rH?A%;e~zv_)nH%WT&KLx zoR+O-ij`S92tb){^07I*>3Zf6(i^<`92Bx#J9Hb}=5nXCyEl}j^E_-vf}Dua+_GK9 z=_B6RC$wGOnxm-tN2f5|SLzO%YoYO#!LR_WS!>YkCizQ#Wsy49PFV)7Y%Z0B5URO;nQ!n_C5Jj8Npo^(J>1%>d4Vg=-eZ0SI()3eZB%f8S zMPJ>|oXgkw)=O=eg|isCe|h!bwd)Kkb6VOK;IdRUz2v2E!;hi%Fz4y4b=*PDO5l|;)?bJ;|~ zi$A1>ZSDmHllooG&~!4Jo4UT@cQ8y%_2aA+a;nY3M0jI5VMYw!JA`6nc6&SygVz27 z6Kj8bqj=n%Uo41Q$kXIs`O|g+7PTHbrI>qZ_+z3}%w-!1eJaiEn%CPEoflaA1S{{z z?F#RAkEy*<%*!%gy37a9l4y8mdBD4zBr{^Uf9OM#SIj@m8zO!?ZBjN1q@-eQnS2S0iOsVQ#*k`uK<5hTQt`g_-_*sjU zA!)NkW4G5hgZ^>63tyVS0KRdel2}wMWu{DA@ptd- z8{)xbE?>>aCrG>8ICV97kBXAldZetnlo;!#J;igq7kncK^Lf{J^r+w+21@ST#8Wm` z=`!~?-jj>h<~(?qHOl)oEz`MmL&Ue*mX@J1vRz|NlR~y)`wJQBADbzXhq=bthxaaV zXtQb1&g0QcvpM=T;|?fQ%(DBuTsSnto);_5OfGJLFBkif1tf(&=N{4O( zJWFkf%k@$8>M=DUYPW=M8zCU)n&xz`8w9Psl21WAs8f<8szAcJ8Y|@ z8~2H@nxCzw$~1y#w5lY7&T9&*7IQHt+6%q7b=sfK`lF=+Ck1p{*kU^>1Ts9&J|E6h z`M=beR%x@odDalaNYQ7y9Xc6ye~;^s)#gHG*t+l+j?BbAhW0(J_kRlgGuVH1Ic_9c zV^d6R;r;C5a{cHkWa1`D!K!cL0(WvvvDzTIckEOsduV_4##wz%H=18LW0iu%Ygad- zU8~Y;3Jp@-AC_j7N z(&iF0qJEIUE>H;0=`yAHs3W70g!A*%XQ$HAu2oj=3CP* zd)>0oXml-BR#hF$hCVY<-Td4Bwi#bM<&ipvZ;C&x@if^V84aAupU(Dt9KEk5UoXeh z=DCwLgi3kd2Xi~Tbr~trZH-lG|Q{Yx( zEIRD+`|~grmD!-+Q0$V1R!zWghEeo>!R+N7h8U z8h6v45x5049n(Hv=l|oNB;(G_%Eh)&_y#3Qg2G*$ne1P@B@M(;{hz$aW&e?s_&~IJ zpg$V_FDzsH224<;hhz>QL=z!&|M=QVFsstPuj2H4@-0Gde;%FqYZKh}36*@U2gUXr z_F_mzQq>F2pFrV5Wwq7N!nWu|?=_MQv5O@bq`lH-;*Qp>cFe z>Jg30Y3GU!HmTG&j=b*rmyyBq4@iP)#3)$*t@fw;{od_VMq@p*g5JcEKb%B$*Q8kn z(-&d2z;tGf(_lI6PmZxMTOts$N_q>%Yy@J$p_+b$$Xd)T&mQfS%y}!YDuWwx{Lj$@ zNMG^w+K6U}!eWpydm!KkG8;r7uxy>hy#5bSivrvQ{AI-aSL-z(mhab!VC(?GOcY-j zps~bYaQ*+$^8epf)2`IZ*RuHGbs4#zhmkNlP%z4|#n`^HSlnwr>;tz&JI4%5q-ztU`r}PL{&P!B&{d6;MJbX9P^82mEH@P^BT zCOnOzef)LS(D!|N7msD5)j4|HgD>s1+TKYGb%NCz8oRM-9ZNHWcEM+o_P5Y0NSy(B&mf1v+a!6b!0ky(m7(%@ zuT}Nrw^x*F^6(!Jkp39Fo3mgVt@VobOu+YBc&m4^tK7&7Qg!JVG;Q4SrS1-1y*)GKsTHe(J7qqo)2yL9qCV)%xDr z^4(Oc^F_xzUCUo;^-A+hHFJTG{(0QYBm>W@pNdmI)6(rI&OoESLUFCVJ?>wTW*b#2BxC4{oW5YRmNfFweWHE z$>A}{xWG635IwF>Sc4CprzDVX$Rn;i*a!?RxN2$Q>X}szRa&7qkfNSx&m)qQ_O}|1 zwBezpq1IN8#a)m27rRF+Iqe3f9mpe>w3m9$O@28nZwFU;e5aR`;wn+&mGxM1wFn*D zc}L<{P7xo#(rUYP6$3RgHPt+>mZpB5GF{FWFcA_VKn01EkteK^T&QrC^nrk?M&$c@ zZ$y>nKhECxwwufM4O(2A@}P40GTUC~;owoT@|?Y@vI+N7c<#)Q=2m!ZhSDO}h4*Fg z>M2=vjh_mDwy3$B-yyDk`R6m`^T=J-4=3NPgcv+X>i<06u)gFdv|;v}lOZd>$toQm z>ObNtW~Y~2;%A(nc|6dsX6K=F&YqgbdWJF`@lCoxPK5=9=)i2DYQ#y9qEB9 zMfpvL(&oW7`ssa)H2*G-bT2YNW%z?xneJ+7jH*uYcxfb#!s54;;%0dW0E(fd$!~mB zhq57fFCQ?>Ii>GgD6m3gLUwzcC%(nD;4<&yC?S2@B%)#Gb-@PbI$hE1-f`Bqv7t(K zm>IZs(G*$JQucn_1P1Kz%%-jaJ@dJ)z&ig)%uw6tY)`Lu=;@VO4UNvXsfkigZ6|c) zRf|$SpBO~zJ_LEJd84PiGDAd#2Stal^D@ZXUP-5w| z9Z&(|^IZS1$Yn@>gS-8jE+NZwooqHXf=_=xz0qA!W&l~9*59!#>Y;CRD(hIDocCZ2WvmrL0&4-DNE#Kn&_!U8jzg5m{r6+Hgu7mi?>R6SK=Ft$I zsF!RRw-K1wI7_!b(#PK$LnztPS1pE>IV}WrVYI8X6N+IWY{n$Ao@;)yCfu?Mw~oxK zwG0FbN#=U2p^IEdBT<;+`|Vv{T2TLmk#q;9$U{^U^nEt8ho!9x^gC*&9SYrWkSmAZ zQ9~-p8!}TpCm4^v2W?T`9M1+jshT+RuYl-xS{nixG%2Y`lWCaI{%e2AHS7e$MMBr< zp&;Iv80Dss;1X}YKmL%XS&+F>zCMY+ z!laJY$0KNj>!?(7ujGe!QsX%?%NG8pHVtKO4xhi{r#CkL(=cehP>6>)N5kYC_^G_V zE}`Rv=+^G1;h!n4lhSsIKdT(H;nd)Ft3ze(v+pDsT((SVBpZ&?tTlQnLu~RFx)qAR zF6FYUR|@^3YAo+_7;{^fE+*V;kxS6a^}{a6jq=vbb?4x>EBFZb10AsFEtPGSW`(b) z=dxYnJx1$)DO_Qb8jL&-ak?ohb^^!yM={TYXlq-V;lErm3(6?jg=H? zE6fa3Bkglnrc*8|5<848S_(5|46HdWcztq{sxISwZYXU~2q4n|l{*DDz2Noq&Y^@@urIJ3-AEsoR|jkzF; zrSfQx`1F`MbWz+@v8sWV5-3ay$HLKj-HB^Srz?O=9k5foMf-lV=k8cPOS91^)!3{$ z*&z%;GiKm1J!*@ps;^pgIMLw6zpDQF5eHL*-*XLMx_ioZ1819I%BsDQ;4Y*FTXvH9 zaM!z8Um4>x^2M5p)Th=bpD#hS)cWBV4GbBVg>P>O4p7(#?su6J+*#$ao+VT6);IZDmln0JZ$c zhwbBR64}0B-9dM$WoFW4(RDDPpm``SpD`+*a3I)wY6RSr>nqmn#VJNIts=B6OtXFU zKt(4D*xu`cIx`4=Tt1cq&VK#r;qx{*fyU9y&%j&^Cw|$?P)j}MNyNY)|N*lhNS~+KVAs#ojdLe#u{1k0mOL-_cE&5@E zcVzwcciBZcEkkQL>6umh5XkWhD=+poh?gob*0G8AE?C30asN7vY5XMQ%>zqUgwxUc z(MHW794CW!Ja*~UsQ%eA<{lH^fnZ-v)?wu4R;pHG{ehP)jiQE;t}r~95LynRN~mZ{ zyKjzm?_?UfN$#&iteE8fJ<+0pJ=e@d43FNk>4YoKDhj?1Ohz$S9Y!JU1P+IkJI-C& z@T@AB{YdH`dPebX`*pzZQ50d|BaycM{MNSjOlB1Qi3$zIa(|OyEbpe)OyEvG1FT4U zs<|gkcANcGx78=aw;pJ5og%s;NW%Z6HcjXhrho#_D2v zQfn8ztc5vp;+y`(D4tLo8gm(N51d1DW(yz`Vsb~|saS`5i{whp6&2Es zACBvv7eaWh=PSQHz?JH^nI+tOn8s(Yw4+bVuiD>+77K&E&2mB_ppYMuw(-hqH3=_U za1q=OO6(c!7uc}+kRu*Dsl|cHk!icXe}6R_*6RxvP(v0h%J@hL2;Q>-G7gVrSl}!Y z4h`#984cRyXPIsXdY)JaT;vc2u^CIs^tnklhAo8HeAN_Z_#I7WfcPB^ z`-KKEJz{R}dU==0;RT8agWi~YI3_Ui+KNes`pn7~ocoL$|K%n2T-CEE5OkAN?lWv0AP#&)QsFM zgXeSrXvSYYQ+x`GEHD6ba*F`}_5W88`}25ULztJJU(Z+hjf7q@^A|5bRvHZ8qT3G( zZ~K~{^DrWJ2&sogqlq;&R6>7(RIkDr!~!D}A`El3o(g~8;s&qM@k+&KtR?QqIaUJ$ zOgh7l1%QtO=>H`by$eYhgMt0`?PcE%klMZ-vH8J-p?mi0p EKP?~Lh5!Hn literal 0 HcmV?d00001