CertificateValidation/PublicCertHelper.Strings.psd1

ConvertFrom-StringData @'
###PSLOC
RecordCountDoesNotMatch = The certificate '{0}' contains {1} records rather than the expected {2} records. '{3}'. Microsoft recommends that you use only the documented record names for additional security.
SelfSignedCertificate = The certificate '{0}' is self signed. Azure Stack requires that you do not use self signed certificates and have a valid chain for security.
WildCardCertificate = The certificate '{0}' contains a wildcard record. '{1}'. Microsoft recommends that you use only the documented record names for additional security.
MissingRecord = The certificate records '{0}' does not contain a record that is valid for '{1}'.
CheckDocumentation = Please refer to the documentation for how to create the required certificate file.
MissingCertificate = The expected certificate '{0}' was not found. Please refer to the documentation for how to create the required certificate file.
InvalidPassword = The provided password for the certificate is not correct.
CreatingExternalSelfSignedCerts = Creating Self Signed certificates for external AzureStack Endpoints.
SettingCertPasswords = Updating the password of the external certificates to the domain administrator password.
ValidatingCerts = Validating the external certificates {0}.
NoPrivateKey = The certificate does not contain a private key.
NoChainOfTrust = The certificate does not contain a chain trust. Please export with all certificates in the path.
MoreThanOneCert = The certificate Path '{0}' should only contain 1 certificate.
FailedCreatingCert = Failed to create self signed certificate in store '{0}'.
SignatureAlgorithmInvalid = The certificate has Signature Algorithm {0} which is not supported. Please avoid using {1} signature algorithm(s).
RootSignatureAlgorithmInvalid = The root certificate '{0}' has Signature Algorithm SHA-1 which is not supported. Please get certificate with SHA-2 or above.
MultiChainCertificate = The certificate has a chain with multiple roots. At this time this is not supported, it should have only one root
NotMachineKeyStore = Local Machine Key Set Attribute missing from private key. Please export from a local machine store.
IncorrectKeyUsage = KeyUsage is: {0}. Requires: {1}. Ensure the certificate request contains the correct key usage and the CA uses the right template when fulfilling the request.
IncorrectEnhancedKeyUsage = Enhanced Key Usage is: {0}. Requires: {1}. Ensure the certificate request contains the correct enhanced key usage and the CA uses the right template when fulfilling the request.
LocalMachineKeySetMissing = Local Machine Key Set Attribute missing from private key. Please export from a local machine store.
IncorrectCertChainOrder = PFX export contains the certificate chain in the wrong order. Please run Start-AzsReadinessChecker [-pfxPassword <SecureString>] -pfxPath <String> -ExportToPath <String> [<CommonParameters>] to re-export the PFX to a supported format.
UnprotectedPublicCertInfo = Warning only: The public information of this certificate is unprotected. We recommend fully protecting the certificate by selecting "Enable certificate privacy" when exporting the certificate from the local machine store. Run Start-AzsReadinessChecker [-pfxPassword <SecureString>] -pfxPath <String> -ExportToPath <String> [<CommonParameters>] to re-export the PFX to a supported format.
CheckPriviledgeRightsFailed = Encountered a problem trying to gather Security Policy to check a user right {0}
UnableToResolvePrivilege = Unable to resolve Privelege {0} after exporting security policy, but the test will continue.
UnableToResolveAntiPrivilege = Unable to resolve Anti Privilege {0}. The test will continue.
PrincipleFound = Principle {0} found in {1}
PrincipleNotFound = Principle {0} not found in {1}. The test will not continue.
PriviledgeCheckSkipped = Priviledge Check skipped during deployment.
AntiPrincipleFound = Principle {0} found in {1}. The test will not continue.
AntiPrincipleNotFound = Principle {0} not found in {1}. The test will continue.
NoProfileCheckSkipped = The NoProfile check was skipped due to any of the following: 1) PrivateKey check failed. 2) Parsing the local security policy and concluding that the local security would not allow the temporary user required for this check the neccessary logon rights. The No Profile check is linked the Private Key check, if this has passed this can safely ignore. To run this test, grant the local group 'Users' temporary rights to Logon Interactively and ensure it is not explicitly denied. 3) Does not run as part of deployment.
UnwantedCertificatesInPfx = Additional certificates detected in the pfx file: {0}. Expected certificates detected: {1}. Ensure only a single certificate + chain certificates are present in the PFX file. Azure Stack only supports a single certificate per Azure Stack Service. Please refer to the documentation for how to create the required certificate file.
TestOtherCertificatesSkipped = The Other Certificates check was skipped because Cert Chain and/or DNS Names failed. Follow the guidance to remediate those issues and recheck.
WrongKeySize = Wrong key size {0}. Key size should be {1} or higher.
DnsCheckSkipped = The DNS check was skipped because expected domain FQDN and expected DNS prefixes are not provided. If you would like to check the DNS, please provide these two parameters.
RootCertNotOnDisk = Unable to find root certificates on disk {0}
TestException = {0} failed to complete with following exception {1}
ChainCheckFailed = Checking chain failed with status {0}.
ChainCheckExtraStore = Checking chain of certificate with extra store present build from PFX
ChainCheckNoStore = Checking chain of certificate with no extra store
ChainCheckRetry = Checking chain failed with status {0}...retry count {1}
ChainCheckSuccess = Checking chain completed with Success.
RootCertificateFoundOnStamp = Found {0} certificate(s) in {1}
RootCertificateMatch = The issuer thumbprint {0} and existing root thumbprint {1} on disk match.
RootCertificateNotMatch = The issuer thumbprint {0} and existing root thumbprint {1} on disk do not match.
DotlessADFSSubject = Certificate with subject: {0} has a dotless subject name and cannot be used for ADFS. Subject name (for example, fabrikam) and cannot be used. Specify a certificate without a dotless (short-named) Subject name (for example, {1}) that represents your Federation Service name, and then try again.
IncorrectPFXEncryption = Unable to detect PFX encryption as TripleDES-SHA1. Re-export the PFX with TripleDES-SHA1 encryption, this is default when exporting from Windows 10 and Windows 2016. OIDs found {0}.
BadPasswordAndUnknownEncryption = Importing Certificate failed with message: {0} Ensure the PFX encryption used is Triple-DES (the default for Windows 10 and Windows 2016).
RevocationModeNoCheck = No CDP information was found on the certificate, disabling revocation check while building the chain. We recommend including the CRL HTTP endpoint on the certificate. Speak to your Certificate Authority to have this included.
RevocationModeDefault = CDP information detected. If chain fails due to revocation checking, check the certificate properties and ensure there is a valid and contactable HTTP CRL endpoint specified.
IncorrectPath = The expected path '{0}' was not found. Please refer to the documentation for the right folder structure.
SkippedByConfig = Skipping test '{0}' due to configuration. This can be intended either by the resource provider's PKI requirements or by declaring custom configuration. Typically doesn't require any follow up action.
ErrorOnX509Import = Unable to read certificate. Does not appear to be a valid certificate. Ensure the certificate is presented as a byte array of a valid pfx file.
ExpirySuccess = Checking expiry date {0} for certificate {1}, against threshold {2}. Success.
ExpiryFailure = Checking expiry date {0} for certificate {1}, against threshold {2}. Failed.
ExpiredFailureDetail = The certificate has expired.
ExpiryFailureDetail = The expiry date {0} for the certificate is less than {1} days in the future, or already expired. Certificate should be valid for at least {1} days.
DumpPfxParamFail = Skipping PFX encryption detection. This check only works on Windows 10/2016 or above.
'@

# SIG # Begin signature block
# MIIjlgYJKoZIhvcNAQcCoIIjhzCCI4MCAQExDzANBglghkgBZQMEAgEFADB5Bgor
# BgEEAYI3AgEEoGswaTA0BgorBgEEAYI3AgEeMCYCAwEAAAQQH8w7YFlLCE63JNLG
# KX7zUQIBAAIBAAIBAAIBAAIBADAxMA0GCWCGSAFlAwQCAQUABCCwWp9aOlUSC3LZ
# awiAb4+VFQIzXvnS/95X04aI48umhqCCDYUwggYDMIID66ADAgECAhMzAAABiK9S
# 1rmSbej5AAAAAAGIMA0GCSqGSIb3DQEBCwUAMH4xCzAJBgNVBAYTAlVTMRMwEQYD
# VQQIEwpXYXNoaW5ndG9uMRAwDgYDVQQHEwdSZWRtb25kMR4wHAYDVQQKExVNaWNy
# b3NvZnQgQ29ycG9yYXRpb24xKDAmBgNVBAMTH01pY3Jvc29mdCBDb2RlIFNpZ25p
# bmcgUENBIDIwMTEwHhcNMjAwMzA0MTgzOTQ4WhcNMjEwMzAzMTgzOTQ4WjB0MQsw
# CQYDVQQGEwJVUzETMBEGA1UECBMKV2FzaGluZ3RvbjEQMA4GA1UEBxMHUmVkbW9u
# ZDEeMBwGA1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMR4wHAYDVQQDExVNaWNy
# b3NvZnQgQ29ycG9yYXRpb24wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
# AQCSCNryE+Cewy2m4t/a74wZ7C9YTwv1PyC4BvM/kSWPNs8n0RTe+FvYfU+E9uf0
# t7nYlAzHjK+plif2BhD+NgdhIUQ8sVwWO39tjvQRHjP2//vSvIfmmkRoML1Ihnjs
# 9kQiZQzYRDYYRp9xSQYmRwQjk5hl8/U7RgOiQDitVHaU7BT1MI92lfZRuIIDDYBd
# vXtbclYJMVOwqZtv0O9zQCret6R+fRSGaDNfEEpcILL+D7RV3M4uaJE4Ta6KAOdv
# V+MVaJp1YXFTZPKtpjHO6d9pHQPZiG7NdC6QbnRGmsa48uNQrb6AfmLKDI1Lp31W
# MogTaX5tZf+CZT9PSuvjOCLNAgMBAAGjggGCMIIBfjAfBgNVHSUEGDAWBgorBgEE
# AYI3TAgBBggrBgEFBQcDAzAdBgNVHQ4EFgQUj9RJL9zNrPcL10RZdMQIXZN7MG8w
# VAYDVR0RBE0wS6RJMEcxLTArBgNVBAsTJE1pY3Jvc29mdCBJcmVsYW5kIE9wZXJh
# dGlvbnMgTGltaXRlZDEWMBQGA1UEBRMNMjMwMDEyKzQ1ODM4NjAfBgNVHSMEGDAW
# gBRIbmTlUAXTgqoXNzcitW2oynUClTBUBgNVHR8ETTBLMEmgR6BFhkNodHRwOi8v
# d3d3Lm1pY3Jvc29mdC5jb20vcGtpb3BzL2NybC9NaWNDb2RTaWdQQ0EyMDExXzIw
# MTEtMDctMDguY3JsMGEGCCsGAQUFBwEBBFUwUzBRBggrBgEFBQcwAoZFaHR0cDov
# L3d3dy5taWNyb3NvZnQuY29tL3BraW9wcy9jZXJ0cy9NaWNDb2RTaWdQQ0EyMDEx
# XzIwMTEtMDctMDguY3J0MAwGA1UdEwEB/wQCMAAwDQYJKoZIhvcNAQELBQADggIB
# ACnXo8hjp7FeT+H6iQlV3CcGnkSbFvIpKYafgzYCFo3UHY1VHYJVb5jHEO8oG26Q
# qBELmak6MTI+ra3WKMTGhE1sEIlowTcp4IAs8a5wpCh6Vf4Z/bAtIppP3p3gXk2X
# 8UXTc+WxjQYsDkFiSzo/OBa5hkdW1g4EpO43l9mjToBdqEPtIXsZ7Hi1/6y4gK0P
# mMiwG8LMpSn0n/oSHGjrUNBgHJPxgs63Slf58QGBznuXiRaXmfTUDdrvhRocdxIM
# i8nXQwWACMiQzJSRzBP5S2wUq7nMAqjaTbeXhJqD2SFVHdUYlKruvtPSwbnqSRWT
# GI8s4FEXt+TL3w5JnwVZmZkUFoioQDMMjFyaKurdJ6pnzbr1h6QW0R97fWc8xEIz
# LIOiU2rjwWAtlQqFO8KNiykjYGyEf5LyAJKAO+rJd9fsYR+VBauIEQoYmjnUbTXM
# SY2Lf5KMluWlDOGVh8q6XjmBccpaT+8tCfxpaVYPi1ncnwTwaPQvVq8RjWDRB7Pa
# 8ruHgj2HJFi69+hcq7mWx5nTUtzzFa7RSZfE5a1a5AuBmGNRr7f8cNfa01+tiWjV
# Kk1a+gJUBSP0sIxecFbVSXTZ7bqeal45XSDIisZBkWb+83TbXdTGMDSUFKTAdtC+
# r35GfsN8QVy59Hb5ZYzAXczhgRmk7NyE6jD0Ym5TKiW5MIIHejCCBWKgAwIBAgIK
# YQ6Q0gAAAAAAAzANBgkqhkiG9w0BAQsFADCBiDELMAkGA1UEBhMCVVMxEzARBgNV
# BAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1JlZG1vbmQxHjAcBgNVBAoTFU1pY3Jv
# c29mdCBDb3Jwb3JhdGlvbjEyMDAGA1UEAxMpTWljcm9zb2Z0IFJvb3QgQ2VydGlm
# aWNhdGUgQXV0aG9yaXR5IDIwMTEwHhcNMTEwNzA4MjA1OTA5WhcNMjYwNzA4MjEw
# OTA5WjB+MQswCQYDVQQGEwJVUzETMBEGA1UECBMKV2FzaGluZ3RvbjEQMA4GA1UE
# BxMHUmVkbW9uZDEeMBwGA1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMSgwJgYD
# VQQDEx9NaWNyb3NvZnQgQ29kZSBTaWduaW5nIFBDQSAyMDExMIICIjANBgkqhkiG
# 9w0BAQEFAAOCAg8AMIICCgKCAgEAq/D6chAcLq3YbqqCEE00uvK2WCGfQhsqa+la
# UKq4BjgaBEm6f8MMHt03a8YS2AvwOMKZBrDIOdUBFDFC04kNeWSHfpRgJGyvnkmc
# 6Whe0t+bU7IKLMOv2akrrnoJr9eWWcpgGgXpZnboMlImEi/nqwhQz7NEt13YxC4D
# dato88tt8zpcoRb0RrrgOGSsbmQ1eKagYw8t00CT+OPeBw3VXHmlSSnnDb6gE3e+
# lD3v++MrWhAfTVYoonpy4BI6t0le2O3tQ5GD2Xuye4Yb2T6xjF3oiU+EGvKhL1nk
# kDstrjNYxbc+/jLTswM9sbKvkjh+0p2ALPVOVpEhNSXDOW5kf1O6nA+tGSOEy/S6
# A4aN91/w0FK/jJSHvMAhdCVfGCi2zCcoOCWYOUo2z3yxkq4cI6epZuxhH2rhKEmd
# X4jiJV3TIUs+UsS1Vz8kA/DRelsv1SPjcF0PUUZ3s/gA4bysAoJf28AVs70b1FVL
# 5zmhD+kjSbwYuER8ReTBw3J64HLnJN+/RpnF78IcV9uDjexNSTCnq47f7Fufr/zd
# sGbiwZeBe+3W7UvnSSmnEyimp31ngOaKYnhfsi+E11ecXL93KCjx7W3DKI8sj0A3
# T8HhhUSJxAlMxdSlQy90lfdu+HggWCwTXWCVmj5PM4TasIgX3p5O9JawvEagbJjS
# 4NaIjAsCAwEAAaOCAe0wggHpMBAGCSsGAQQBgjcVAQQDAgEAMB0GA1UdDgQWBBRI
# bmTlUAXTgqoXNzcitW2oynUClTAZBgkrBgEEAYI3FAIEDB4KAFMAdQBiAEMAQTAL
# BgNVHQ8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAfBgNVHSMEGDAWgBRyLToCMZBD
# uRQFTuHqp8cx0SOJNDBaBgNVHR8EUzBRME+gTaBLhklodHRwOi8vY3JsLm1pY3Jv
# c29mdC5jb20vcGtpL2NybC9wcm9kdWN0cy9NaWNSb29DZXJBdXQyMDExXzIwMTFf
# MDNfMjIuY3JsMF4GCCsGAQUFBwEBBFIwUDBOBggrBgEFBQcwAoZCaHR0cDovL3d3
# dy5taWNyb3NvZnQuY29tL3BraS9jZXJ0cy9NaWNSb29DZXJBdXQyMDExXzIwMTFf
# MDNfMjIuY3J0MIGfBgNVHSAEgZcwgZQwgZEGCSsGAQQBgjcuAzCBgzA/BggrBgEF
# BQcCARYzaHR0cDovL3d3dy5taWNyb3NvZnQuY29tL3BraW9wcy9kb2NzL3ByaW1h
# cnljcHMuaHRtMEAGCCsGAQUFBwICMDQeMiAdAEwAZQBnAGEAbABfAHAAbwBsAGkA
# YwB5AF8AcwB0AGEAdABlAG0AZQBuAHQALiAdMA0GCSqGSIb3DQEBCwUAA4ICAQBn
# 8oalmOBUeRou09h0ZyKbC5YR4WOSmUKWfdJ5DJDBZV8uLD74w3LRbYP+vj/oCso7
# v0epo/Np22O/IjWll11lhJB9i0ZQVdgMknzSGksc8zxCi1LQsP1r4z4HLimb5j0b
# pdS1HXeUOeLpZMlEPXh6I/MTfaaQdION9MsmAkYqwooQu6SpBQyb7Wj6aC6VoCo/
# KmtYSWMfCWluWpiW5IP0wI/zRive/DvQvTXvbiWu5a8n7dDd8w6vmSiXmE0OPQvy
# CInWH8MyGOLwxS3OW560STkKxgrCxq2u5bLZ2xWIUUVYODJxJxp/sfQn+N4sOiBp
# mLJZiWhub6e3dMNABQamASooPoI/E01mC8CzTfXhj38cbxV9Rad25UAqZaPDXVJi
# hsMdYzaXht/a8/jyFqGaJ+HNpZfQ7l1jQeNbB5yHPgZ3BtEGsXUfFL5hYbXw3MYb
# BL7fQccOKO7eZS/sl/ahXJbYANahRr1Z85elCUtIEJmAH9AAKcWxm6U/RXceNcbS
# oqKfenoi+kiVH6v7RyOA9Z74v2u3S5fi63V4GuzqN5l5GEv/1rMjaHXmr/r8i+sL
# gOppO6/8MO0ETI7f33VtY5E90Z1WTk+/gFcioXgRMiF670EKsT/7qMykXcGhiJtX
# cVZOSEXAQsmbdlsKgEhr/Xmfwb1tbWrJUnMTDXpQzTGCFWcwghVjAgEBMIGVMH4x
# CzAJBgNVBAYTAlVTMRMwEQYDVQQIEwpXYXNoaW5ndG9uMRAwDgYDVQQHEwdSZWRt
# b25kMR4wHAYDVQQKExVNaWNyb3NvZnQgQ29ycG9yYXRpb24xKDAmBgNVBAMTH01p
# Y3Jvc29mdCBDb2RlIFNpZ25pbmcgUENBIDIwMTECEzMAAAGIr1LWuZJt6PkAAAAA
# AYgwDQYJYIZIAWUDBAIBBQCgga4wGQYJKoZIhvcNAQkDMQwGCisGAQQBgjcCAQQw
# HAYKKwYBBAGCNwIBCzEOMAwGCisGAQQBgjcCARUwLwYJKoZIhvcNAQkEMSIEIIl4
# 264htnZhKVv6lDMCGRJICb+/DL3AiAbuQCbh+COMMEIGCisGAQQBgjcCAQwxNDAy
# oBSAEgBNAGkAYwByAG8AcwBvAGYAdKEagBhodHRwOi8vd3d3Lm1pY3Jvc29mdC5j
# b20wDQYJKoZIhvcNAQEBBQAEggEADpssqXxJJLyxBGI9b+WMhBRjqQ+EY88VeukX
# shItkCEecMfAU4J9K3oLYz5+Fows92y/YaYn2iYLGyBEcs9INOwhpYKIinvEc9is
# oJQRy9MyTvanuQxq7/42O8wHTxMMaR/Mfdmsm5V6lE8W78gJtw8WGNj0ll28pfd7
# UYaqSU0R42kFCB4FWjBZ9cQIdJAa7XWZm7H32v5NP5h8CX+M9cS3D4ij52P5Uh3r
# yMNfKWytOOl3ZDoVU0gadvdxbTZarDG3QjlL3n4zgb2K726gTPaa2MgHlx5C5dgt
# H3j9zCFj2qiEr0356t9uJStZJ26jLpfYwMkmlaefKvCREd3EoqGCEvEwghLtBgor
# BgEEAYI3AwMBMYIS3TCCEtkGCSqGSIb3DQEHAqCCEsowghLGAgEDMQ8wDQYJYIZI
# AWUDBAIBBQAwggFVBgsqhkiG9w0BCRABBKCCAUQEggFAMIIBPAIBAQYKKwYBBAGE
# WQoDATAxMA0GCWCGSAFlAwQCAQUABCB0TuuhMUfjwcXR8N6X6kTPK/OJY+j94I9S
# t3x77Dh0YgIGXtVJ115dGBMyMDIwMDYyMjIxNDMzOC45ODJaMASAAgH0oIHUpIHR
# MIHOMQswCQYDVQQGEwJVUzETMBEGA1UECBMKV2FzaGluZ3RvbjEQMA4GA1UEBxMH
# UmVkbW9uZDEeMBwGA1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMSkwJwYDVQQL
# EyBNaWNyb3NvZnQgT3BlcmF0aW9ucyBQdWVydG8gUmljbzEmMCQGA1UECxMdVGhh
# bGVzIFRTUyBFU046QjI5QS1FMzdELTY4RUUxJTAjBgNVBAMTHE1pY3Jvc29mdCBU
# aW1lLVN0YW1wIFNlcnZpY2Wggg5EMIIE9TCCA92gAwIBAgITMwAAATDYOFZkjDVG
# pAAAAAABMDANBgkqhkiG9w0BAQsFADB8MQswCQYDVQQGEwJVUzETMBEGA1UECBMK
# V2FzaGluZ3RvbjEQMA4GA1UEBxMHUmVkbW9uZDEeMBwGA1UEChMVTWljcm9zb2Z0
# IENvcnBvcmF0aW9uMSYwJAYDVQQDEx1NaWNyb3NvZnQgVGltZS1TdGFtcCBQQ0Eg
# MjAxMDAeFw0xOTEyMTkwMTE1MDZaFw0yMTAzMTcwMTE1MDZaMIHOMQswCQYDVQQG
# EwJVUzETMBEGA1UECBMKV2FzaGluZ3RvbjEQMA4GA1UEBxMHUmVkbW9uZDEeMBwG
# A1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMSkwJwYDVQQLEyBNaWNyb3NvZnQg
# T3BlcmF0aW9ucyBQdWVydG8gUmljbzEmMCQGA1UECxMdVGhhbGVzIFRTUyBFU046
# QjI5QS1FMzdELTY4RUUxJTAjBgNVBAMTHE1pY3Jvc29mdCBUaW1lLVN0YW1wIFNl
# cnZpY2UwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCxtfaXhKop/kFn
# gK6NmYPbqTUTTC5YHsCBcFAM66FX8R12RHJ4BJmFSvInpNAnNeCSM0iS2naOBFp9
# 8BUCRp7vQxZD7tAQaNqEVVZqxuDcJoINxT1zGg6jkpS7EsCqKOWjoaRTHtnV17BD
# ue/k3/H2EkrVnLFFy7j0bohQmC2k8jDsaJhOTs8gon8xhk5E9t8RClixXDS2UNfo
# 9kL4hFdjJwV0wCB2bQrd12VPfwcV6/lfQqBn4P9rBgsMIvVLhHdKB6YS+nD3JPU3
# fn11Ml7nKUAoryJCGVcUougngQZldYbghLmUOMtZDPZeqPofczHSiE+Y4stOmHJV
# I+Ajs3ONAgMBAAGjggEbMIIBFzAdBgNVHQ4EFgQUwY4pJ9R5Si5fb6kiuqViE822
# IzYwHwYDVR0jBBgwFoAU1WM6XIoxkPNDe3xGG8UzaFqFbVUwVgYDVR0fBE8wTTBL
# oEmgR4ZFaHR0cDovL2NybC5taWNyb3NvZnQuY29tL3BraS9jcmwvcHJvZHVjdHMv
# TWljVGltU3RhUENBXzIwMTAtMDctMDEuY3JsMFoGCCsGAQUFBwEBBE4wTDBKBggr
# BgEFBQcwAoY+aHR0cDovL3d3dy5taWNyb3NvZnQuY29tL3BraS9jZXJ0cy9NaWNU
# aW1TdGFQQ0FfMjAxMC0wNy0wMS5jcnQwDAYDVR0TAQH/BAIwADATBgNVHSUEDDAK
# BggrBgEFBQcDCDANBgkqhkiG9w0BAQsFAAOCAQEANkxPxt22AW2EjMGy2sRRLhin
# 1bjXvG57ri8L1WU7myOjDwpF9qI8HHe3Utd7xzADTzuiJIer2cpm1JUEKlll10W8
# TAFBoE+ZM9dvwtTJAbR1Sza1lqxIO2EsgQfXwNlKzZIGpmwUI+UVWsTAgwUoJfkj
# uz1oWyCyKwuqnen97pzUF5zJKS4QlwiHN0I3G/CP/bEJYTvtzeMdmRjkzzjyhLN4
# 2zleTPEVHNndsmzGQuYBfc0XEu21cCYs5kD1kII8wg71Cy7s0oASqeL7b4XPwAYn
# pcIzwa9HoP4T4+xwZtJ+FURzzVqs5MxQgLn4QuKsZLpE6F2bfva5wSaGfCQSDDCC
# BnEwggRZoAMCAQICCmEJgSoAAAAAAAIwDQYJKoZIhvcNAQELBQAwgYgxCzAJBgNV
# BAYTAlVTMRMwEQYDVQQIEwpXYXNoaW5ndG9uMRAwDgYDVQQHEwdSZWRtb25kMR4w
# HAYDVQQKExVNaWNyb3NvZnQgQ29ycG9yYXRpb24xMjAwBgNVBAMTKU1pY3Jvc29m
# dCBSb290IENlcnRpZmljYXRlIEF1dGhvcml0eSAyMDEwMB4XDTEwMDcwMTIxMzY1
# NVoXDTI1MDcwMTIxNDY1NVowfDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCldhc2hp
# bmd0b24xEDAOBgNVBAcTB1JlZG1vbmQxHjAcBgNVBAoTFU1pY3Jvc29mdCBDb3Jw
# b3JhdGlvbjEmMCQGA1UEAxMdTWljcm9zb2Z0IFRpbWUtU3RhbXAgUENBIDIwMTAw
# ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCpHQ28dxGKOiDs/BOX9fp/
# aZRrdFQQ1aUKAIKF++18aEssX8XD5WHCdrc+Zitb8BVTJwQxH0EbGpUdzgkTjnxh
# MFmxMEQP8WCIhFRDDNdNuDgIs0Ldk6zWczBXJoKjRQ3Q6vVHgc2/JGAyWGBG8lhH
# hjKEHnRhZ5FfgVSxz5NMksHEpl3RYRNuKMYa+YaAu99h/EbBJx0kZxJyGiGKr0tk
# iVBisV39dx898Fd1rL2KQk1AUdEPnAY+Z3/1ZsADlkR+79BL/W7lmsqxqPJ6Kgox
# 8NpOBpG2iAg16HgcsOmZzTznL0S6p/TcZL2kAcEgCZN4zfy8wMlEXV4WnAEFTyJN
# AgMBAAGjggHmMIIB4jAQBgkrBgEEAYI3FQEEAwIBADAdBgNVHQ4EFgQU1WM6XIox
# kPNDe3xGG8UzaFqFbVUwGQYJKwYBBAGCNxQCBAweCgBTAHUAYgBDAEEwCwYDVR0P
# BAQDAgGGMA8GA1UdEwEB/wQFMAMBAf8wHwYDVR0jBBgwFoAU1fZWy4/oolxiaNE9
# lJBb186aGMQwVgYDVR0fBE8wTTBLoEmgR4ZFaHR0cDovL2NybC5taWNyb3NvZnQu
# Y29tL3BraS9jcmwvcHJvZHVjdHMvTWljUm9vQ2VyQXV0XzIwMTAtMDYtMjMuY3Js
# MFoGCCsGAQUFBwEBBE4wTDBKBggrBgEFBQcwAoY+aHR0cDovL3d3dy5taWNyb3Nv
# ZnQuY29tL3BraS9jZXJ0cy9NaWNSb29DZXJBdXRfMjAxMC0wNi0yMy5jcnQwgaAG
# A1UdIAEB/wSBlTCBkjCBjwYJKwYBBAGCNy4DMIGBMD0GCCsGAQUFBwIBFjFodHRw
# Oi8vd3d3Lm1pY3Jvc29mdC5jb20vUEtJL2RvY3MvQ1BTL2RlZmF1bHQuaHRtMEAG
# CCsGAQUFBwICMDQeMiAdAEwAZQBnAGEAbABfAFAAbwBsAGkAYwB5AF8AUwB0AGEA
# dABlAG0AZQBuAHQALiAdMA0GCSqGSIb3DQEBCwUAA4ICAQAH5ohRDeLG4Jg/gXED
# PZ2joSFvs+umzPUxvs8F4qn++ldtGTCzwsVmyWrf9efweL3HqJ4l4/m87WtUVwgr
# UYJEEvu5U4zM9GASinbMQEBBm9xcF/9c+V4XNZgkVkt070IQyK+/f8Z/8jd9Wj8c
# 8pl5SpFSAK84Dxf1L3mBZdmptWvkx872ynoAb0swRCQiPM/tA6WWj1kpvLb9BOFw
# nzJKJ/1Vry/+tuWOM7tiX5rbV0Dp8c6ZZpCM/2pif93FSguRJuI57BlKcWOdeyFt
# w5yjojz6f32WapB4pm3S4Zz5Hfw42JT0xqUKloakvZ4argRCg7i1gJsiOCC1JeVk
# 7Pf0v35jWSUPei45V3aicaoGig+JFrphpxHLmtgOR5qAxdDNp9DvfYPw4TtxCd9d
# dJgiCGHasFAeb73x4QDf5zEHpJM692VHeOj4qEir995yfmFrb3epgcunCaw5u+zG
# y9iCtHLNHfS4hQEegPsbiSpUObJb2sgNVZl6h3M7COaYLeqN4DMuEin1wC9UJyH3
# yKxO2ii4sanblrKnQqLJzxlBTeCG+SqaoxFmMNO7dDJL32N79ZmKLxvHIa9Zta7c
# RDyXUHHXodLFVeNp3lfB0d4wwP3M5k37Db9dT+mdHhk4L7zPWAUu7w2gUDXa7wkn
# HNWzfjUeCLraNtvTX4/edIhJEqGCAtIwggI7AgEBMIH8oYHUpIHRMIHOMQswCQYD
# VQQGEwJVUzETMBEGA1UECBMKV2FzaGluZ3RvbjEQMA4GA1UEBxMHUmVkbW9uZDEe
# MBwGA1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMSkwJwYDVQQLEyBNaWNyb3Nv
# ZnQgT3BlcmF0aW9ucyBQdWVydG8gUmljbzEmMCQGA1UECxMdVGhhbGVzIFRTUyBF
# U046QjI5QS1FMzdELTY4RUUxJTAjBgNVBAMTHE1pY3Jvc29mdCBUaW1lLVN0YW1w
# IFNlcnZpY2WiIwoBATAHBgUrDgMCGgMVAAxpZWpY9F5UFd4LqREthbhptdJmoIGD
# MIGApH4wfDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCldhc2hpbmd0b24xEDAOBgNV
# BAcTB1JlZG1vbmQxHjAcBgNVBAoTFU1pY3Jvc29mdCBDb3Jwb3JhdGlvbjEmMCQG
# A1UEAxMdTWljcm9zb2Z0IFRpbWUtU3RhbXAgUENBIDIwMTAwDQYJKoZIhvcNAQEF
# BQACBQDim3dcMCIYDzIwMjAwNjIyMjIzMDUyWhgPMjAyMDA2MjMyMjMwNTJaMHcw
# PQYKKwYBBAGEWQoEATEvMC0wCgIFAOKbd1wCAQAwCgIBAAICE0ACAf8wBwIBAAIC
# EcMwCgIFAOKcyNwCAQAwNgYKKwYBBAGEWQoEAjEoMCYwDAYKKwYBBAGEWQoDAqAK
# MAgCAQACAwehIKEKMAgCAQACAwGGoDANBgkqhkiG9w0BAQUFAAOBgQBFyyN+Sywb
# d5gP3H+nIm4G5dSsxqYcsu37h9a+yut72tAqAjOW7GjlR9CDOKx4NopaxM3Cb37C
# SXKqhOKq+gEKkbTr4zUDOaR5+0onofS43ycenSvR2hRWnqpg4VXNnicZNQlHgTAR
# S++C6AuprS++W5ZvlkQHVXJk2WBeV3v71zGCAw0wggMJAgEBMIGTMHwxCzAJBgNV
# BAYTAlVTMRMwEQYDVQQIEwpXYXNoaW5ndG9uMRAwDgYDVQQHEwdSZWRtb25kMR4w
# HAYDVQQKExVNaWNyb3NvZnQgQ29ycG9yYXRpb24xJjAkBgNVBAMTHU1pY3Jvc29m
# dCBUaW1lLVN0YW1wIFBDQSAyMDEwAhMzAAABMNg4VmSMNUakAAAAAAEwMA0GCWCG
# SAFlAwQCAQUAoIIBSjAaBgkqhkiG9w0BCQMxDQYLKoZIhvcNAQkQAQQwLwYJKoZI
# hvcNAQkEMSIEIFn3RKIgd6Avsl3hRfeVBptab/o7vLM5fsCkRZBHirXKMIH6Bgsq
# hkiG9w0BCRACLzGB6jCB5zCB5DCBvQQgq1DzJsW0UHduprWOYScvQUc3TrLx3Goy
# cA4rxowVQ40wgZgwgYCkfjB8MQswCQYDVQQGEwJVUzETMBEGA1UECBMKV2FzaGlu
# Z3RvbjEQMA4GA1UEBxMHUmVkbW9uZDEeMBwGA1UEChMVTWljcm9zb2Z0IENvcnBv
# cmF0aW9uMSYwJAYDVQQDEx1NaWNyb3NvZnQgVGltZS1TdGFtcCBQQ0EgMjAxMAIT
# MwAAATDYOFZkjDVGpAAAAAABMDAiBCAHvQMuEdEXcbv/J8tebFd6n/gVjzqVuvMh
# wAmBNqw0iDANBgkqhkiG9w0BAQsFAASCAQBn/100oQVjVCgdOnmRFknmIs5tyyKB
# QQCDDaymEIhEF9NcheHOSXZBPYifiBn5vXCHN6H5Zm6/QFDgc5fKA/4nHs9mKC+j
# b6K7mJG5WI1qCqY98xte2GfjwATqBr7rR0zbVvaq4IzIMj7R0dp4g5AGxAlQom/k
# CJWr+Wc7vpWJ9sen88Zx6s8utDkmXD+m93WgcgIeOrVnuZA13jrFlaR3m1X6Memg
# 4TRN3Qtu0p8Ol/JDwvO2VDylFd67ZaRFk/at4p65Ikl5cKE3JaZQicTLqa31FpaE
# ZJScSeh8rqCdh0ji2T2xHfmf352Z6FqIWpwsKCWHaeESPAmmeTmr2qrn
# SIG # End signature block