From 00c0febc5819302684412a0f873f5b7f83ee22ca Mon Sep 17 00:00:00 2001 From: Jeroen Pinoy Date: Wed, 24 Mar 2021 22:13:37 +0100 Subject: [PATCH] chg: [Administration] add correlation exclusions section --- administration/README.md | 12 ++++++++++++ .../figures/correlationExclusions.png | Bin 0 -> 27487 bytes 2 files changed, 12 insertions(+) create mode 100644 administration/figures/correlationExclusions.png diff --git a/administration/README.md b/administration/README.md index adbda06..e3004e2 100644 --- a/administration/README.md +++ b/administration/README.md @@ -363,6 +363,18 @@ When viewing the list of allowlisted addresses, the following data is shown: The ![You can edit or delete currently allowlisted addresses using the action buttons on this list.](figures/allowedlist.png) +## Managing correlation exclusions +Correlation exclusions allow you to exclude certain values from the correlation engine. Values can be 1:1 matches or substring searches denoted with a leading or ending '%', or both. + +Examples: + - https://www.google.com/% will match anything starting with https://www.google.com/ + - %google.com% will match anything that contains google.com + +After adding an exclusion, new values coming in will not correlate if they match any of the correlation exclusions. To remove existing correlations run the cleaner tool (see 'Clean up correlations' button in screenshot below). + +![index view of correlation exclusions, showing examples of exclusions with a leading, ending wildcard](./figures/correlationExclusions.png) +*Note: the JSON source field is not used yet* + ## Using MISP logs Users with audit permissions are able to browse or search logs that MISP automatically appends each time certain actions are taken (actions that modify data or if a user logs in and out). diff --git a/administration/figures/correlationExclusions.png b/administration/figures/correlationExclusions.png new file mode 100644 index 0000000000000000000000000000000000000000..b75ad992add45570b083dbbfe366dd444fecb8fd GIT binary patch literal 27487 zcmce;cT`i`w>HeNfDO=N;YhWDpcJJ^35eL}N|ml6y#z&SfT$=OQNTiP5v7F?A|(L= zAtC}&1B4JDBoXNe5Lyx-?FIea@1Hxqcicbjc=s3?*?T2>?KS6`bIrA$XRiI~w&hLH zeUkfxgoH#*Ze6n$653@WB=pzgJ;GZhI`e5oTVH>LSl_%VRM9Ivw{@}0+sML5NT@Pp zKllFbt?RwPw;V%+gv465KYz6YOCJge`K_5;GqR0vTOf z3;J<*kEVX>_oA~YD(On+cI>-`&e{CTkKD&~+3mQ8yn}zi&-tU__u_0NVP9UHaH^bs z=!DkUW%0Xz-7!)$l1)l1d|t`jy91}A?!B0oGnO;s`QPl#?ywtbvBk@=_S;9t#0ewRGmv#0p?iO{txYTHr?37y#S zT=7rQp@Zgs{XYBm>Ah_|2?<@<^}kpZT}j#XhVyQ5_`tdwKgtZ|s&Bco*lttmvssN_016xX=GHlP z-N&zMqI>UoqI+5vW{Fg%o=!zuXl;JUr=n`jy3e(b#+>vNZoXV4w;d|QFKw(8s}Sdn zZqnwqWqg|6Z;nfivQy2kxSt`8uhZ$OxwNP7E(wMlZ&i50SZEmpf87OGt{v73_H&QC zV%0dV^;;od_ZD>AGwu1Mr|IXERYndoC3S@|uw{ zYwVMV8#ILU>XJxLGGV+@>wC!|y~)$({L7~Hh%M`AJ@k*B-%JslG}x~G>8$lG8(K~I zdesns`o@z0?xX*?^qYvQ1;x>=-lk4;BjOez6fCqIU{VwFVyye_+an~;z~{$z71 zI?ZYMxwAu4kfOQFnGSSpetskHdA#^+g=I%r8O(l)tBCgW0Z&a%W)@-N$y(RNFHk?C zZy4X3pUe-FYv>;6l+=s7J0UzBMXKL1K*!C9_M<&we~tYls)k)5MEow zZ;I!AbTpx(UlKAozj}Q$?qjJxDQYZ2>3o<#Hjk?hT5Nsn<@*G+MmqP-#MzQ%*z`o|fOtW_qh zJSZ-`C+lEC#n`i#7Gs~I2)3!;8Bk2Jd#a|p3fuAgfr<`kZ$ocS*kMLiSay^YEu-ap z*W}~Y>I&khPRlO_*{v;DZ@cT1l_J%qfd0sCxRQd^$ii6EH6~21uT&1*;jb-Xk*8~i ztujCR;im7`Bypbw%Z#yGMT;_eMq4Hk?c zpZQfvS)&f>l_h^bEveVHNGZjF<%}2&?__>g4eEdTmqkWH#e?*C(Z=i5=@oWx7!lnw zrKB0^y51oC*PHYq-!JlfoPO;|J6z0(V?L#h`ZoCUVnvF&?jmid`QS9};|wtVl>!XW#SGH(V_* zcX4`I zTt!Jw$nvq=meSY>4@q{*o$O0k{V-Ria}V|~DtXam=tP8P-0{yEvn-Kc>_NA78$9N5 zTF_dUUwN?$9wGNLW@t#5_%OK|Qaz{bns+z6#EU-Eu~vkRM3N0kc{y>W~};gfIH0$hvr+S7gFhzENImfV%?3Fl!o zWqy^@FrASK8QM`Yn4({>MsVHE?JnjN$)n7x~(3Ix{Pzy`!#KimgPm$}dsG>uZGyN*M zdi>b!g3ldZ-(jaiiMxwDWAD$Cc#~!iaBnQ*>qOh_IdG z1-X3$wnIMH*;$p9Lfn6BhRgPqx6WOs_+?O_IdY>vXNaD4UaG8_f6AQntzKdp72Kp` z(T?H8oj^ONsROhB#fIwURK)%Keds!Nn7tom)d&cY1n4yk%EgD%(z3^UKimdRJNkC$ zysquug(zq}Aw@ppp+xzZ=B>aq$=Vhjj6QsqSNgsML| zyE?jU0zUVl3LizIH()_$6QkhKPqLL8ggHJllWhjvq#V&%MUxCEbDD10M=b z8g&rLxEqga4P078JU58JrtvE)98QOQ5328AT%1jHM7n8Xd?EBx0eh~A-f+Gp57r=R z{U&UR;!-we_42vv{k$N;8`3Iw+`gp7e(2*48`_onp$4vaj*YJGlI!(-nB{alC1MWYY{$;^#o(ip>vXNR zm0liw+O5%E$5ca@eM?bj|Mfwre90NgIehugY~d{L`%gLLo-b0M#KTyS{qk*F{}7Cg z?ZIoH9&hy0rlQmIB9td>fzcnA6Zze7hk8V8nuaIrPYu_)rI|gSwv`j*&-~Pzzf!y+ z;yO1(w_};E6o|*5we>3s^g|ib+IKx@Lq4AKIShkN0~}n}QKBt-vn=}j_1mZ9ZQ^Fu zsoxP!nnp3KL7%Mvu=X8MT)LEOU2A1lO6W{n=PI_Srm)W~BkfsfaURB!W$t&6@4tQK z$HF4B`;|@+tm*;aI?WDzW;*FhON_ios7nd@Ua48oJFf#4jSx*>#S_4u!fK9d?(ojC z(0us_W>CiQPDAOyUkK0d;3U5gXwdPu^qvOwafu=&PF>3Mu&e=#`+C2}v$Rx7*kxn{30_W$Acq2P)aJErL<@G1_s0?r7t}zGZyVD?+wx{cP)Ofuv+W)K7%v( zCOuGJi-Z5s0hYY{s4j(Y^YCJTKCl%f02VoaKtGJnPdI({G*#pKVW}~uvvw&L>X;o% zQWO2rLwHIutEp-pE9n?6cvQLc-j-vzib@Fp*yL@bp`sbe0m|zrA31dhC6px9Lpz@NH3eS-|*L zBlLjpU6g%W!8LIj?U(4!LO*1;g#n#l)DYmR^Z2<}w|jY6{cgUB&-_H1QZ4qvk!owJ zroQ}6heXe z1#`p{YZD)p4~JVsHZL424GpVs@U+wa$HTA|r{dNh{qgrQMa+8To@skD@8{#%ipM?Y zO#tsadw%Ve48tEuQ=xv${`d}m@%$QmL)cDXZq&LqFvnS47il%{7I3TN#Y}|aZIc1n zqd{5fcaxefi|@zH^+T_$9?S4)TWATLdYL!4d9V1r$=rNjaIUEx@Dc1j$^U51%J*Ds zD-BjO;%8x$GIXFNU>nW*|tj*j}?^deK)VC2`uqHJ`gmOJBx}CFe)MV|>u2 zQj?C@=)~d+7N5-yZI3$AFOGy1KRgGvyXRt=0h9!8d9Z#qG)vTP%ajT#a zx-`1PR5MZCF;Zj3kwlTC&uK~=vzFrqToa`jxW&#dR$Zc29o_bnS~6OPJ&LWjv&u^+ zA3Y%RgMdM3kX4Ifoqc{>&A1RM$`mT49F+SsPMxgk(PPdZ&Jno*8`4@2E%IS2-S^2J z(Y#*_*|Zpa+h^0}uxiUCCO)1iPs^*(t~NteNb9<(%Q{tzoF*sRhp?Bw>5Gczr`UNq z^{d_cf^_lhB5y)l2!=C1A?uqCi*^;~!+VD>5wah9b8W(>M3wqpaPkMAcPyWh3rXo_ZVnFJN~%|B!!3CE9n(iL}p!gbEV zxY%btZP9soh^8LU_C`W#lk|+t@F}NuSk6yCuc@pxXW>Ndj?u5QC0p%ZJ)o7*; zi=t5 zu;YZ5lmB`+sE&F1tZ|0ue)$(^os9fX3Y5nJ)66Qs#lY<6)b@S;dFpqycZWbPC*I#+y@2W!+S>Ev3S~ca-Vo!|@(Oqpq>46iPCrfj-;!q^G4C1yOs-MPX zT*`bPr7)r`aNEDw35>mE(qJGd_!%Q99W)Vsyn-`*q_lx}7d~{jR@{0q++sp6{B6)9 zQQ8nDh`{jH$j@B6?df7*C!Wj#DGg$6${y|H#e)STmzFN!*y$r>ppY3+ZI*>i#Ly3Z ztbsP*UUt{<&OOg}*%3yM_vp`Cb|-rQXdy|r^Ao& z%7GP#CC0>wUHm7^G(DaggAfKaC-hZ6K(JTtpoz=_osztdZD8%vjnnP16(u6ihV#{44_D=Hm3}Q%;2~M5W-1X~Tt3!D8Ch()-g? z*9`RMx3(ly_t>)268A$kKr1>RzH0taxN6@DHT%ZO{k;b=Z_tMoklcb(N7op#kdOFO z9q`%#o8pmI&mgJh9)hN`+2J8gRbvQYma{ zY^xsI@P&SFzP%|NCshH;P<7}S+%W}_>mKQM%9@$+Uw2)t;ig>gH2fa6K3;X7zl+R? z$5PPlzi=mNdokD5g?EKApP2$7MT#e`*?B=r6RGA?KLuqs3aZiJP#8pfrq>H~>DaxllUpj|;X(q8-_<@8^ z$Jp|6z4yHL*Hr&DISC)XM9_V(Jt*umShahVN;ge{#GjFp!PF4CBIQbF>Bb)c<0~qVWBJP*>hQcaL1==|BtZ6|3#Sce^gc9Lp9HZ zTl@4ykM zwH-@QJ;SoQ_Rg3OczmZ%{k;}!!evqDFAqvf(UT6U*h~O7rQEG1{C&<8ya|H5c)St0 z?#b?&Wsts<{3~#qmuw0BTerP@AH!9_rRfa7%3O8}>or~7Z_y;h+syLlIyRp(zZtMK zkXMpbe`q(kw}9TR9WUJ@M;~}kurYSS)Wn3%ffNsoJ4_ zac<(MWrtGQFrT2Lkz^p64S(MsCYX9fts*_P-Hmw|V3nYch(>BUX8R@AMwUmFUP)6e z|5sBw=V9C))k**Q@cG9_123#eenP&MvxgGRT5yP(Gn9kKzYz)>nrHH<8mS`b=fP0- z8$dbIzYCfaXYjDbuLYez*=iBb&1WJRS_bpdM{a;?>;)RMR#7gy~ht+c1`#{BvZ z(=%zOtu7JuL49*>*3gb-M$y0^)6Q?xtAVN%g6&3QZU7;TH`pge)PF)+Wazu;)`K=X zs&N)YN=p?AvACh$;~(e9&p}=lkM8LoJlt>$CuRr5j5%kEW``>OG1IARw?Q)(&9^SpUv=+K{VuE6lhKUGiO1Q5uuGRKp^KqAn~~Z6=S#CI+FjnB z9Z?tGHo<@8ud8{&JGH0jmk{GQaBe^9R#tHl=Iro8qXDzx$?CNCTC%|S`jo)J%#gmpmP8?ja}@qy z#U)WFRt5(*kGlQz5rgtsu1FtUg%p$yGYLY zwD1j2z7AgI#sm6kTQQJaG%9);9rPG*D1i5Uhc$F6REGrDjEULJ<8nY@5>jtE*zpfN z!+KW+vOffu6RrVTBREISQTJEvZgJwCyk->Z*4Hy{w@`60R@pwi%0;bxsCpr3f?#G@ zVA@mPQS|44g3i?qRi~xV&lW~c|K@4>&xjUB zVALNZRY(JeEu4~6NbBsT>lxH@L4#%!eZ%pel@szNj8%UA)C?1`r?*pTH=&a0in{=} zpSKEwb;X7PGBT)NEiR6odA}p=1@3Up{(*L+?V)^rh|}Nhx)bluG^aYjBMJsYi}s}deY6`~*R1w$ zTfn^*F{v*Am2B~VVPN+J=C4MR+acBFeuo=R-W2yA-Jckv4xF;U^!q;{z4DiuOZChy ztH^lDhBraxWAJhf@_K{cAlfZrf~9HPmuCeUz$a>1laP98~N^*vxp>1*mV14R!PbB^vc3S#7 zK=-c2pv@anJLBxpG4;sMzxT67>SM10Zd)(YB1b(cRJb~3lH!qyeJO!Y&#sM~nW1Ks zdM;gWys5|tU9|?RZVUa?M^eP5G2TNh_0&)C%Ds}o(1$6??;f-qEh9Jnts>OtW4TYy zyrtLfe!}jN`!bG7zG1h_P(itV-t;~3CpIv4+=A;mN(}44h|DDa=qP}vmu*fw%#1y~ z?-9Uf{%t}~SnolbQ6rl)!E=av@7KA`sM7n4f0vkrA)+Ia*qU2@Us8^xycTE7g?`os zzYH86y<%&kO+5c2NAAorm-0nSTfb;bgB8Pfk!{xbd%$92-}CVcto#c}1Eh(2i+3(T z^Phd0WTuv@z%bt3W9mmEnHhi~h~RXmW)xE&ZTpgyDGheZe4!K7IMaqPG@jnbD67q! zq3)l}oPjovsf*YMyAOg=X>KJaTh$pNADljk9NSh(uC$Yk+L-Rsi8l+P(-wtY!7|&W zmmh4=j_pVF^cD0^R^)lhn*vX77k@1{^jLEJnN~( z+3u_d6H2I?`<|tKXdyPSH1k4-97iiXL|W>9KmL}@=X;4VqsAwuChzZ5VltWkY4>*d zzL3J)-2V{3Z}ab}wQ3dn-i9>R34Y&Ms8HbjhxQf9zVUw{hksrcD=sI7wC=atctz45 z&kG>#-@gBA<=oZ}YkhVeH_jpANc#OT)-c`LKNTkD+l!1b#z!+^I4s|;bYCR{5$7a4XL~|5z4VL$2;{SahORTWG#TEd)J#}mQEOQQ)lg~T(@Dv9=j~Kn3avmX z{dNHJUkYhX>)ppfn^3g|F>RA`Q`J4B84K0XgOdv-fjY$Le#((?ouk-Tbo`qiAIgsT z_3KJx|CpUC$^s0aeDTG5LMJmO@Tk0Q%~AghU1kXJ7s2c$*VZ9uH&Fszfui2Q$$*&% z#)(dnGzgHV7e1s|lKW|kv#q!Nt*5u1&VW>z%s~NFj@QW^{9+T7d=J@B6 z5+=Z=+t5H2Oa=L-G^R*{}D z`ZP|j!abf6J*{*0{4*fN%}s&XIF#@4Zxqb}lN&X2%;xjY(H>-D5P~dhs#F+@lCBs- zS?W&uzHoK--G}6R3edvS=NK#bonQXS=#tuH9S{s1b^$KY-v161U&s3|HK#IhzWt!Q z(AHY5S*z*LA6F2h>pPFrM%t}_0(fs{DQ9rEO}8F(tz{<(MKobJl-AV^UqH3r$U`+Y z^iaV!;kANI3r*UfX0AYsuy|V^ep5U2QahnI*SRnOoo7>`4Y@dTx6X)sa~I~C7~)MB zUlS$pif8+E@u2l%+513nFKFpI8p@}U_EOR4byg;Q0=Aa1@Q|Ceb0T%T*6=T1>Na+zmI3;VY@MRw-| z#`@S%2@t?9Sxm1+Ar|g&HRNl=vm*Jpt0w`QWi!e9041@>BT-J3NbEmH;rr`hq4jK`)t6Y6`gsuZ@5o5mV;Di!# z@jba0%Q2ToN(KjfcsB^=jI(68Yv={OPGHJ0NDomg!57hZ$YYQpoe}*VNt`<#$`6+9 z>Ye-h0RAGK5?mrrSN|?5f;QzpaufRF9MZ>>)w|op%yhzE^VfpHUGKX|6iNE6P#}#b zm0!>2o;8X3QiGEzh@BZM{U*8!ZSc7ju*Z@!M(Het`Kx_zCwlxmi13a#bSbt3ATXW# z>(*vR6}19lgYpm|g|ruom#%keFf&h#f_52xo*bPTfnmnzx7f08}`9rIU!|hvq%*RNVE)i*FfU zRcjr^g0Z#3R}y1dUv-JiRT&-O_(}YEZsU#SBVF<@C2}L4>sUYkBT1oxuiDu+_c~v_ z`cKb^l#Ki*QAX%j=D9z^|Npaen*Sb;{%1)(HM;lem~lfp9EC)R>|pjm$^d;>JGPW9 zy(Re9{zv7tSh1qOM}5tyMP?ba%63_Nyr`7RzThWM7!+4+O2lVjG3ibZ2=Lvu>m!zCmdeY{7=pEeffARL)XC3nq|p{TAAOzJ+4wQx_v4SyO1&sh=6g8{pX*)S-4UIgrrUl((b`fDR;FoYoV`^+ zat+Z9WI^5N4S&zKsEYNiRHB4S?Y%U(I(n#+{!=SOhh$qH{0^0?ckT3JQbWy$lyJeI zm4`4ZSkWh$2jU^XJXl+b9Jmim7fJq(k|}nuvpXvFDI@tuOLV#IyWCjUiSKAuUaEhWrg}Fjv7i+O}!8j&E7aK=PrhR;_$a>hk7Y`!C z8uDFALXQfZi43z!>ZC#sCq(lUd98)3`|H_0ILObM#$#Cw9HuL2u!XAuQ;Kj-mwwVM z6!l&7*05)c<}?rwt#%^~06Ggi=Sk*fec4@hA^$X)hmSy-85>3EMh=Tlv0fF65wpAr z%2t+Riz0uERRyI8h*BE0-v(PIJB?JZY<$i$`m@6>}tyrYN7lfN&xXD#7 zY`#xLVvla0ZPaC|D$A!Nl6nIkHopd{8D5J4@yBJn@!>-aJ~lkdKq}I#!D7>pHJC%p z8%1_4&VY0Htw9+nY`%f2973r_us%hV0a2S4`46zH0{|PXe;dIJ*#*G{60HV&V~SZ> zu;KNdz~;G4cE7ISwMf_M<){_zi&3#2Iv)%Gnzp+X??+@!XSC?K|KjkMi}}x2U()nkViEb6l}z4q z%3dvOUIVf#wcU)}dB5UwNbx1}SM1S$AFT7|$BuVW2|4tm{Y%kFy}u z!uX5l?`0fEg)#`P7}hR!H@PK#N}P(1aNWQqLKgGSGV}|)4WofBHN^DOmAQ*(3(+$M zAx4pZGp3pi&Bj+`M}H4pi{)U;)>hnHeNpQ)!Tp&1NRt$uIi?OQ>*cbi)t4!XVZ$b0 z+?NNKv7fZhlnhVaU)@*2Y4rH!yBFZb_3((yt~w(ds6jjF(dosCQ9*si%1j=z62C~S z_i@d$Wfvc7jVdX8lslDYNQkwV?EhJJS0-X^S(lySTXq3ipsV{RYM)Gy1y5NH%w)rz zHQSLbV~=^{;+S_cNL3aiTyKF?6mm&Dz<3OK{5|siw*>~c)W9wwSr~Cg<_YcysA}m| z&L~As$JtdIL0Hm8%{37D2~wk#R-pJ^LSijtz}d?&HE=%=>x+7pcxJAED=EtvO01Ve zc|)K$GJ5gZ(b#N9d;Q=%hvw6A8opMB@atOe^+N#Oko(%&sRrsPi;JQguU@+tP%gG0 zy&-^<@S@m_*T-5ZwOuwJfPFyliYxwUcV9So#X0Fh)M)Dc{2SRTF_j$M9@j(j4Oc@F zhTB-TdenWbloMxG2Pfl=GrEn{CZDZqVwg4ZqffsNdN(pnrZ-s&Sr0pdI@d|>ykhSD zij2?Zad{e>lQ9^ETzX9zh712D+-4@hbwHst+?b_BTpn&AnL z6v1mK_GdIW3r3F{S2fxQB;#HaF@UgIQL!_Cu*74cbAG0yc0_RpiPZz(xK zR3!}*YyyPtKc0=Oo&)!fjq~}-tE3pp0RB2ZEZC5X&VfbZ>h$Ag#`M}`fV7wgv-t*q z4g=uy>T=2}xBOVN;%ABV%=b(45-%A&>Nd7m_2@T|#qlFo66EgIK)QBvZq7Cjt9u^{ zfmBd4Cf#JeS3iU-lsu2=d0;3vcOa*FYr**S(Ks*h?r8w(%r1RDTVl|^hTIZ&1p=J& z!S@Th&yL7i89N^lFQFlhw6zZ0*vq~XltI^k$V60bM+ul z_-ooFU06fL3}nrVbnl<{9qONNAQDyr@qvFWW6gIMdP6$r?#1Ga>$z?3_=>^=0&{(?^uZnS=^1xKA0k0Q| z&rwygRg~Gbb!u23Jf;Do>cDFi4CoGNU22F}c>mYyCwW9}U2n}{DHO=1VYntCu%Q(Q zM)U!1YK6yw^~#JTr#&R}I=t~DX7=MpBJgOhcrkNl7_DL?d*x*$POCd;@jN`c$RK9Z zClI#U*vJMy!kBGouFJ}*8(bJmXLWRR+;I$a=S_z19yJVoCm$W2)7kwfW;4~76t3WN zr(eRYCjfF#%&FHg7S}J51w>^|DF*Tu1$}YEoX(o|e^}8r z&Tu;j!)1O!eKigDgwpDWo(e}q9s1<}4zD&PH=&w!HnR58oSmoBFu3=DG!XHW#Ut_d z$Z5ZTNN+?rK2pF2YAS^RPzL6o*DCg}O#{f}$Wi~&z@Pl+QZEGU$z{BhMkc?x@Hz0&!{3b0M@{*Adc`%U7j<8X0Ag$mAyRwX# zHBe3r>t1*{MuA_ct`WT~zuG1b(0h^%0SAMHxz`CLo@K9NZUoht11w=fqrUw5Z!=~{ z^6hn=e2UBl4*j!6H)bU$jxCYu7w^c;wTKFa#P%DLdyvBH4i@*^CARjsPDlQOmCE)F zTn@Y39#Y&yJleX-?w#@sstP9s;Smi@w59k4x#{E-Mb^%T&C4iCLKvKtzme+>w@o;S z^C{y++ln#sk8-3(XS{u;fT3}a`|~5(1WBxRi&hpmIG*l2*DIjr|Y+5YlE z!$~tu@u^bcb-wo$u*CIa*Nrpv88-&Kp+CbNW*aT|GfTf(3Dc{0%HLU#5q(?v>R%t7 z9LZJO`&Wu3O~!mBI}&|~ixfurwtzxugCyZo<*Y5%-XxR}_^;-?dhfy_#sA|??T~oM zz$g8wfuxCztwrY{r7o=)rx|-ZvqLx#x<3tToF4_TDN$x<9S&Mb?z%k#te=Qlv%|d^ zY$r4>?)XPuaLA+Ly~8hgTp-Q+g=p$J5X!Q_Ki|JUui?I9W5|o?8l95x08C87WVlF@ zCYJ;tpokh57udDbSduczb)v+X(};Rg8C{nT*Fq3*e(M@ovIj{G6*!H&9~9f?-!hB| z0%%B zEB3EYQcZ^pFvfaf20|Fuz`vC%W73H^o~6(w{F8C^&H5a#^P$*cN@z*g5x~TP`f`I8 z_=7Caqm3v&FIQCE;|;`1l0-XF#|<5F^CWkcRP8r3Z;fEb5%uz^F|yE+eEuC9s? zm^t{wkRv7i5X>x$WHA4%l7`3zFo%am5`9B~{@0;!?1ociQ*RBZdTbdo8}lLd=M^Ms z1pLe#^PSNii(Ry6iTEY#%zs7mPXxOmpejJYFps0%nj+fyFqv)d!S>D`vgP1@P*yL6 zIx!`~4G-fo{2B_DI2N+bo6i)B6wO-L>_t|>r(IK`i+EQ$vf0Hy7*f0iAwWO8*H>7) zy0GfCN}6=Iq7P=csH~nK!#T{AvV5LZLrR0(LPMPgccKNyeYRVh&dE5SNpGHM0ozXt zHUbHGLvD^<;PVkIa(aU{>z@!@{4nmBV|=dn;>^p~RC5~GX64bG zIv7>TxPH8B0=@OlfD`~k>;|BFt;4xP<#`E`s`agh_r z$P9}gp}HrPyxg|rp)aByBx(na7(r6GBQvdI!}5Q)d{mcFV-`x(W6a7_AE5iGXf@no zQkYphmuo%<*w?$Q8s=6%hgV(f;1fW3A;&~domrH@vus4 zIzi1h)-*s4%jHLLqqhZ>Masc2fsl#>L74eG=H!?Pm))zDBWlO6gFfgw>rp ztjN(C)=cHvwA;eK?YER@S=4=S_Ne#5GWx^D90*x5>xfxhVLb7;eM6OqotvAd&;s+b zC?gUyXNdy?IPoK;>t{K+gER*WXfA^i@~eWFnAc7U-Vm8tW~tFxS+(pz!yllF4904F z-tIa0)%M*YXzy5eOc-IonrEPTk#&3}xz=Ral%0|iI2y>w+B8=sgDS&asrBopV(88> zp*Fs=`8@BeNUuffgvT8IDVzNisU$`b#=x*SwZ9S4R$U`_CpRak!Zj_VJY=iA;)To|#}@T3%f&u?z*$tisM&+syC_tr1vY!maw6 zuAI86Tb@Sf>`i9_t{)$VJS17n35<^bom%Hmn=)=l$+vF2$J_|L)e@bp+}CsmJ^vhE z11-;pV(v@#u7T2zZj$-f*+6^*<_nd%IbV%itA34JRbhSgIRCyxVG;0OdUM%Iu%ahGBLrkv)J$5!lL?BeB)`FVFocH~gqcgC9wvrm z4^=rV?hgsYgy&zva2EgOd0%kHN|$)@KR6^qQDT9cr3q^^7#6>TTkJbZUhFqRIb1o9 zutf!r3Kq4t1|^$%<3OG(!X*SAN-C2|BO(qv1Uc|GWB)8yjO4aA*sp?L z&9Ff}PcGvroOShS8Q+9~v7bcW{EZ8{F*(mC4(D&&Z;jf>b65+0Cif3*&cK++rbF>G z6jb+IV#kOcC2%BUHw0>i*q`spHhEJP30os#to@4$Wz>$JY4jKIlEy zmf+qG6VF2`+hK9s{ssf^bhmXp~d+Fbe9aj3$ z)$;0Vt37m)v`bCCEPvKm=w{83yEAscaysW~OO=MMg4hika96u~+_9GecFZ?UtUOE5 z2;jC33tomX0@0!$G_dk+pLH7nHbL_x`6XGx%Y(t2xSHZojkP9KUJA9T%sxiJccLwc zM)vzal_U#pC9VbYQ)tDF*Ehc}sB;@FoHW+Gb=8o0ur7=BCvL*W0@g+yY(;^YH?2nVvt$J`4yM5xh0E z_ZxT#gsr!yM11HUZFJzr*0?VQX864im&N}C59KPji0K8;^s&;Fy3zCC()ERW{zWN; zxq(333tGFh7X=4m9d^~#;m76!5Isb%g)}@BP>Q{~@w%d4)d96nrr}lwdCjMMIY3;a zq28m1kE#sJo@jvx>h-Y7SKd-jZ!%J*M3*-l%VV>_|AjN@@}@d}Zd7&!&yBps=q6ID z1%sOGvy_tSk=k>2R?YcS3w+6xpmg{JZyDe@-Hk^)fbcAvAhr9_dR4Z5yPt#CwY? zIhGz|%@t~N8rsdH&Xed>u;HT*uL-W!g z@~K+t9L=|CWyI|?FZEEPgG)hn$foZ#wG@+oiF$4P>=gEEBhh47>7A0;f=JT`+*c9w z2Q4|rA`ee*h7@Q#3Ig&|*T0k|xpJU3=jz^%&>T_)e-ms%ygK2DWLjP7*?j)&CwMhY=D7I^nD!v$YnB$JPS#>%zXdEdl z$q_-c6Jf4f?G=*F*$P?wyPzc6$Ee~h_8||*dG!BN?+DhU*H946m;dX4l-?JB&5dN~ zIqT#=l~v`QG&)*n zcz9=S%>a+Y_h}k!6}}2Tw~)96Q3p)FeEHJNxa|gTK=}lsQMSTid)?M=kTISB@n(LH zu?WR&W8~>uFgJaZLlsm6k|gE6qd^1x#!)p~>8Y3#FaS%qR z_s(Q_lHUEb*?vh4pWEMp#kWWUhqB*Dzedbj|IN|*kP_A+8HO_yj1}!rD8U(U%xfu8 zFp{p;h^(Sf!#7LuLq)EKbTS`|?6Ex9T8a4D|F9i7B8-edn*Fl{-b10=bqW2PtqMeJ zZf<&@MZI<^gjFsi{@g#>B5Phbe}8=UWy$9vO;C|-Dc<*PqlrSnYtpIK0UVm zr>7p>H&x4r91$k_V+YMnRCR)kbf#N47Lzu=i-7iGvSNG2ivKlEKYI)&}`&Y6%!UR(Qa#&tXE zZ@`Kw?5@+8EqdS*{j3aq%f@ZAG{xmTuw;?FL+!Hdf5^AXL$1;B$7+xmGdCNU$b`}R z6oU~DKHGMx;UwT$dACiW49IQ)wP2u*zV+ITlSxrj{;!?&?TtXc$sYbe*@fYPYOkhZ z`YG0>4uPAqXusu@0jJ)qx%oe-F<+N|{o4QJ-h*_anP-0+)=Z|!@9*%k#%At00+LgR za=(*KV&#rlgg?26&||eG92o!jpI!VvOREoe$cv4?Ybv{-eJGK4J>Op4f&PfmlUIhq zj)g=?mgAP{4?F3f4M~Qj%SY#Jz84#-Fmmd){(q>QQ@|C=uyFnV#XlY<6LlcGAx zF>CF_Cu~VW<~lPR!2jv*$NYICX41Mm#qBP9TfF7q2mfMN@$J8x|I{mBYft)rvUJV- zEEj$~%0`Yl+l<@|na@SKZT6?fs!e?+Z~BuE=ghzk%#xCG^aB~OW1Gb*4SA;))?KD5 zfBc}@H9dk1vZOi<@n^S?#B@tt6Tw`U0;50y%`l-w{G2dIYKw9^< zVP{RF$pdu?mT~#Y{uIk$9Ao@fvS5M}d+N71iuGY$Rj5M$kWDkS>`$-4pw8GuBWxh8 z=xj}h@##x{4~RQBgW25inQx#^J{5Sw{v>^gxHRLz+b*f~0GExy2R!=aom-!x_ySAM%V-p-pJ})W8I8@vTb7z_V9;q*bKi zw?5g`zI^7WgPmtGKyCRz&oH;L0@S=a;I~M(yn5OtJ+nW#kvN?;MLi_$(*)753nb{t zN-e(^Vq#=nP`i24dJH*G&*X{D>HPL;R35zq+@6m&qe918E+SiLkJGXl!Hl{6)HSU2b_%LOlscLJHeQhXNPy|we%-fvS*EcVCk?3Uj|HT)6IfdxTARX2x+q@3NLEhX1!r zU42fki_Hwu5fdW3utkvBEi4co581Cjdm{xh8R6|KESrn!-fd_w?BYx5B6`a7+-Psk z#`vYRSrQ?XzjStL zV9KtXO;CGyuIIi%b6-C3$&f#%W)?|n8D`G>NEBsmthR6M{}MD;eOSo$C$Edf%wC`7 z#(dTxFwGxzG5I@xCxBhC_72123$#iDL2}SLVs609yHcp4o1e<akI6sC1$lhXtzUVbXU8pN#h%+% zJXzjapC&bKl7H0GAt_b>u^vXZJav4j4IfgS>+~s_TZ72vV?IdlQpRYq+xb_!?k%G0 zjL_Cf<7r%hMrPHCF%g47>urKkg!;6?u_jz*%kAv^e`));WPAr;yD|(VqEM*)gi|Q_RCy zPwb)fm*OaL$7;S>bbM%B|Bdv`p0w10@fF~c)CX9v>9DOwYzt0zg6p#)gg9K~D$ET! zxH+6hyF`v84^H0Z8GsQCDkU2~MqGi8WsknEY?IgA^Q3n~tu63Er>FGJ_f{8^hBH;F zTifGv>*WgsUfU@vZ3^%kR_pL7X~Zq@=cNFstBMP9b+>iv6#x->HCcxGKwv~vQ6Ay- z*}F}C{E)n8ZD6B$JHM=jaF&={P)6#x>IcXy9oc{fIej;E%zUIE`-k174l_Dbg+-5S zc(tX}qvtZ!sP9E~0>ypy5C8I26!^WzPhjy*y2;_=HM^k&+Z#G$EBzv|_jjN8zf1Pm zg^boae$CMXvnzGGKdS~GZP`O|DpF;> zN-=d=n-yiQ+a`KhuA#_jiJkL#w!kr;n8bQ8xI}QS{C67b#@7*5bQCPLUlsncq_LsB zDDuHmf&r26IeFr`FYK%Yok+NKvTASe*BZJECW?e4SdD@~-wt`x%hRg^xOVYzaYZ##fsQS)aXi#eaWc z<1scuZu#`wn}^W_A2tuA(n;c0@QvRk7@Nn(%KeHRxQ-}Lp1P~{mn*}w%^>w%S4y^r zq$61+BksJ1jPQtHHk;EewBgZZ%l2^Ru{hf7XfM}(5sSpxs8LH|GEu=3o;3=$v2|`P z-q!BVW~v?3dx8cLJ-q>440K8eZDe7nO}aXLF`4FKsT zB1g)bX${l#Fh}41+a&?@J7UlFsKJW1&{+}^-jCC}yfe)KFvLy{wC)!%9j|$Wz3>)) zxBEc@1f6%5CALvMvNZHgHdG|3ek&2Y*&04G6_Z>EdgI}VqJ|ze|DYkShyU}r;H4^a z=`}&n>Pa9Fn2#M$XsrR4sFV!qpptz{mg`!0Y_Av?q#AT4Pt4A*Qb6G1J^AC#7wO#?smXEDxU$g9@Ubd|_(4(9?d9BIcIx^le&7RmK`D98f{w0=UZ z)4aU2Q&(5Nwd}cpsy1!krpbZ^Ielw(ql#~X)X2tqu_Jl6Sw#s!;#U4RTjo<&sj8<9 z861IMFoGd*+qp4rZ~r_b*=hT7t8=@eQQ@X3Pz`l*M24-Gv$Jhj(m2pcDfH-lqBemr z2SQ@+TarS!&(a2tU~=b+Meyts#=vrkLD7;L%PPdAUEZ;jJZ5@@s=q=#Pnh6w^+uc1 z0z46cd0m-k8AhN%os^q=eq)BXqjy`RK#IS9V5t>}heBKU$T#m9y@LQ~)ro})N~=lj zf#p6Vck2(F9`2tBv^ujohcX{$?eghrd@WbL>{4mw96?;Q`D+wI70?IA~Hq%r0ToU2b%e~Jv#!D*NXrs-PQFz zdb8!WkwlXCm}ev(>1)*>^L9n5Y(H1c3U!67*oJB8{v_QdH7yn4UD7eq9c0MAG4QHd zvRB0#^;>{(lfUsL;-31~tD;1(^=6(!f_Q($sjV%~Y(LLD^al;NRZh}?oSZDj!%DY_ zFU7*1&$@N93NCNUN{cgeZrK?J{@DaE7Zuv`Nxyz_!9F05ri*}V(q&*Jrq!cJYp_hu z_uLrH95#!*X60Jw#*htO>Aj7-bN&w>{4sOWuM57gv;@AKZ52%^G>uIY`5TnzbWZn= z?!6tm?;mQ8W%Q!xuEUjWf1yKN21>wP1J{2N1cLki4^xZpKVhohW-4I$u(}yHI7Sb` zMF%yOZx=h9_?fp}dl8++kE{p-ELR(z&(8%|W?Xb+J32f+$*8crOsT!?X$PW8lIh2W zh4;u6r^aPHjc^$=(Roy8#^$V66Wrv*rgkhkWF;LFltc^ih<^gX)XLBpcT5Rs~gToAP8WU+ZwyST9Edz-<} zpTe^2H|&<{6AGQCn_v(Aa7hvzf0UgcD$NXvIxI&h@G6XPEjFpL*aM~V>p@)RP=ftB zSfSI$@)oU`I##q$mPRyo6Wu;BzD#Y(bn@&r8^+9l$AS#zi5n=Z3?DGd7=JX!o;$f1 zXjd_2QoX9tKsePi4A3<-nS3l9X6VWjmEjn*&^Eboh!g5vD=1mw8?iKWa(ybPYFOuW z{w_n&uA}pWNv)%1ZK7@+4SWG%GkqbUZ92zr&Aj0A6>{_vC0;?ZhAc}?xoH(o!p_Nr ztnRI{sHkIJBk2XQS*Z11yR3K0Gq>2IRjypml9Bsvs^iV#Np=~(tl~Jo4tZC&ZIGWh z2FB&^H>2q65OVuAk){#_1!vW}aP)$s`en5(#nYnW zV%J@UWzPn3+PiG4bCB35Zv=p_Bd?jA-+@^t8a-)eK09O}VwgrpIcYb2+fxMi_KMMh zOy)mmoFIrxI*om%)rsvzD~t z^7F*@bdMwxcE-K>te`L(pJJK3#9;_5IW3>j>w-@3^&iY`J7)i=%Ax?-OJA*a{rH67 z2ghhtnXlYMu1aD%d7RhV6S<-v3AvWMBaH+{tH3k0f%&V6MzqUXRd65dexN?zV|)wf z-h{isrM9 zr=VcO1@yQup#NL)m9@OVaXuZZo-YoqG+s(^ z0LJhT>3JCMUVa?KvBNI{cEYi?CX)G&(?K^xB)GfGtUSidkJ|X4^fYC5`7XqE9*z_G z;#Hzz`6j(wZBQ3PanYzYTrs)|n&1&)(_N+xU3{C2q>K8lMcMmw$C45mlxv-ZQ)}a> zg8sukcHVV--EsLHk~kycF|qA^8scLJOoUcC^*x{H3~mhXE|^ei%oy=EUMy5#MJkB@ zNDLPJtUO=RpS{~=RcRU+)a%LI^~@Vxnb80P_^sXga*!b+F66<E(Vp_VEnQ8hga}mG&PH`qocdPiy9QAG0Z5nE<0gW<9SHStKd> zT<~hx_uBfRQkm4vU4m$gu3#kIvC!V@0qsRWTKy>Hy!`<=HA<|$S$l=dNAiy>J zH@*Vn$8Nl0IYy1$84bu`oq5%$S4dPw)Iui6P4=y_dL8AN;o~|5qZCJ+lLWyTIxGz3siPr^>~&hUD^_Zaxa->+<88 z6Pxp7v39d_x3>6?)h53U{5)gY9Gj%OpfC(}JSVZFZi6vD1(CzEISD^mOu=!VTMby6 zsTw<<+>jojJGI1zR-R!avfNv_F#}y)KyV3mbS1Dj-4AWC#^`g{&<2~VN?9_WrhM45|P9bxq5SUOl`?@h#YY>X)Xs_eNc`aUm$&1 z*qa4+`fdPEiKK_h!zWL^8FLZri#{}36V5awj*`4GRlA<^qDG`HFEMp)RZN8Gjs%yXXjCWM(5C)7EbzkV;ltH`i2 zUX*#Sr7aN4uKWS-pvJm`95|t-gMwTuX=j9-D;jexQR8g#|&!jI2#Z-EL7f#18{_F*v#id@$^Jv=LC*VLB zwnpo7nO6I7slw|To4aF&o~*8|;TRui;EXvJ1^?0V9<*fNIn(iMMgYb%#EXRp-*yvbQlo78KY<`ppTdG+s3_H9%bPL?+9w9EyBZ-0(Pd$g!e^by6=D&7tV{XYKjtZyQFg4I;*kflxWPO_)c^Shxt+>tS2p}xA)Ev#D`z7$hX z+l-}zWtn~w0FkYgs9hI#O_-{wm36#2(Qr9L!?Ne%5M9q|2VVjJcVqOU1L#cSvq|Vy z@pF@8w^ct%!g|<*-!m?w1#6!C4zw~EpVB~$SU2*tx#HP9BB@=+s=u~WfoayUkv6L* zw_TmzTgB$X3S09fNXd-V?Fw^hnHNzdVxzST)7P>Ta_0MK8uZ8|4kK6hkMdhsQq$Ea}AVT1JChT^8{AW)t^x5X&z_atUzVA?{fvLZ1xvF$~%!r zznC{zukif3B9`m+=BLDA+C<#_4c}i1Bl_U)*2ftojZ#at+PuEYN;^raqn5&T(lex} z-n+m#oY*N!@4d4r{8p5Ag%mKfN5}lh?0cjq=6OyxJO;MqdRE02FH6a_hH?7)vQw9l zeGyiWSOH!jkx=LRj;uo-ZZceg_ddC7>`fzFUE&6A)Y$-Q6?70WB69`eMSNmFz9Wkb348dhw>tQMq z{c~S9)OxO<$ICseP_G}?v0hHTjpDl`gN+!dXrk(ZKq5E_Ni3Yhjyp65g(=Hsj7+*Z zj4i}_MCKPdTwUG`+JX~ia4}P1RNeIAhLDQ@uB*r|nMw~VA$KLE75FcYI z%z2`|9}r>Y0x|*mwPpaGux;_pn5(MHvJsw_rhHYPvd8UT0Kl@Trc2`~=qsvc{|x{0 zm`AOaW7ER&5&&1Z;a;TxZ_O5RfUY?YW*S&CEj^>Vy_?KJTKt#V0XkqmZND+0{dVNz zTAjFlT5KByr2BlU`j_CThsRPBTX^nosyHs+d~)uhTY>z*43t+6;dsUNd~Eu}A<>XY zm85#;dR;v^dBVv`5dz^(JG2(#r|xHIEw*?^JY4}Eo{uc#L*~}{@a1tr6A^@aqLUvKTsH24fbM?oskSVrf}!VqT=Q^^pmWNh7=g_Zo;xsXgR zw$3hgV@QG}l8$*f@B+u?gD3k{*sNPHSLC4JEo-R=FVZIaDePY>VgQ!eT?a72H>x^r zTcTX+bTFe18Qu&1;4Y0D!bg7=&-iJo)@u{cfQFGHpn++|e0;X!(ZAa(?7|E8)X$@F zpT6}!KB9k&;4QDp|C7Sd|7aTj1K*oXv@T-jWC%p_lhG-2+VUTj?BKB_K?I*vod80Z zw(JV6;6HO;#RaR#J0|qkcc}v#{16_b$~$1|x>1bMpo_~x7dbH?vt}RT_I>D%?Z(${ zYa9qkpqbvT7Q8LQ+}z1t?T zINTvy3n?(^H4K0x6l#8zTY3(bB@{rjEcCt(zcwW5S%K#r(Nk5a`WU2V$t+Q8q~96X zK=2AGt-}{TasG|~@=kQPrOiZbJF?E@u?Q8$wPl(e(LLDRPVC1vam*j80#ZgWFtWg< z6IyglGZX?)pQ|7}$DXL3s6NcdT~?9SGpY)7PSeqBVUZLr3VDtOgK};vVM|wPNT1vYIV3D?}MXO%;g+QrwqIk%6SjI-`)R} zZx3h{B?YxT({VsOwP5x+EqDkTrC1Er&rElC(MD)8tB^Csq#GY zOPcmZSZ)RZuq`+OZ(L1K)m_H(`Qg_9<$Nk9p)he74&L_svY>qROGT8IvHx`_soXwQ!yf) zZNUl%C|V`oA}~w<6{gkFp%8~q@VbR*9(qs1h4Om^I`qrQ2ysGQmIn0-LtQptQ53mJTV&zQ=`}<$6cEJfbhg^rIy-%H4f1}tC!8jD;U8ikFUR%>^ zgB@e{$`Wj>OMYoRCK8B9(0E`3*hNK;|mddY`-9U4c z>y4`!g#E(qiPd^R`42Lh(=C*@wX)Xqy2A!WI(78lO$|}yx+}^aryHj;o1tBT4cZll zlQz7%Q&uOE)ME+|I}QF;-BfD~t~%c5e3S{3;qCmgoQS;MgPX2kl#Dv3e@zs1+l2f4B0khIt9FXOXU z&~?GYCac9D8HQZ1pQ?|5P&#uu7xB{3GMUt+G7ef&`ittv2xvR(08ccyMoaajZe6mvWz0I*tVPR(Q2{| zv9fja=Fax7J|%~wm@iJlN-z6Bwgb+L>Oev!M#bZJNsTw71zadEafe1+$H(m(v_jqT zS7}%`)VS?eBddT%w}{6h%pr4Rn+Hw->)A%6JM}n=XE4`LYir1nM6V-g>)+Non71_J z9orq1MX@`)aO$ZA!m;jQe>J=kq#f?aeXqbH$Nk6?#l;OshhS%!ZMUH+pf6=t=IBnu zYku8up6Ndy`X^peSpOt@Got$*`n_T7{kvqdReUAF@AZl{;|AYo$dGxw)ilPM^4@It7u8F9agfE(py`w=c) zi>UnyGmn!C8iW_-dTNV0Qs^%(@C{x+Z#5q!V!Y8u94|d7g-Mx^`OFQu?)PVZJ{(s* zis8Q@p(D&0XTHTQTSRUY{Fz_c1!E87q=>xz=h0jdu4uh@?6Drdxk(q_iBg5+V0ny3 z3(^QO>4}td^b@imeS^(;7#;I@pV-m$dL5la78ZLS-0xD^5FoGKE+lX;`J}&kGn&)M z>aGzqG8%ALrXb!cPm^uMg1vPwfw0Lq86bqeg;J8A!^+HQ!K4i1W#ZMZH%*qnQ?OG_ z^bnlV?s`ucXxB$f^;^7QR@e1xo55!R2Lcs~fJ0Lia+?{vuQXx>?n>VwCQ1PU)jiw~ z@@L^v1n$e0TGDk4o?n!hyA`(lMayhg_2grC){77kSQ9{1%i)=}iGU?8rU~qw)P9Rg z^*-MXpUs!47y8>I@T*q?EWW+>6<2}yoYTAks{Di8tCYXrTZ3VZSlrlstB5}iWJY<}lVVG9T>{;B!q!z7 zu5gT|E{)`lHTX6d9~`a(dEV{QVKdPQ)ovC~?CooR)Q@@)Y|#Wh&7mrn#DR}HEeeg3 zh9}s1D_6ajh6!#0*u|io?@c^}O!dS2_mZ%E*&^%~0iS7^is6xL1b-v73N=?$(T$H1 zP(IhaSKPjn%*$c4*dw@K