From mboxrd@z Thu Jan 1 00:00:00 1970 From: Gandalf The White Subject: Re: Fragmentation Attack Date: Sat, 07 Feb 2004 12:00:42 -0600 Sender: netdev-bounce@oss.sgi.com Message-ID: References: <20040207094524.495e883d.davem@redhat.com> Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="B_3159000045_290789" Cc: Linux IPStack Return-path: To: "David S. Miller" In-Reply-To: <20040207094524.495e883d.davem@redhat.com> Errors-to: netdev-bounce@oss.sgi.com List-Id: netdev.vger.kernel.org > This message is in MIME format. Since your mail reader does not understand this format, some or all of this message may not be legible. --B_3159000045_290789 Content-type: text/plain; charset="US-ASCII" Content-transfer-encoding: 7bit Greetings and Salutations: On 2/7/04 11:45 AM, "David S. Miller" wrote: > What makes your DoS interesting is whether the attacker needs > a lot of bandwidth or not. Ie. if he has to be sitting on your > gigabit subnet then the attack isn't interesting. Whereas if he > can eat all of the remote systems cpu cycles just being behind a > cable modem, that's interesting. > Which is it? The network that I was working on was a 100Mb network. This is (of course) lots of packets at one time. Attached is the excerpt from paper, I was sending somewhere around 780 packets Per Second (I didn't know if attachments were allowed to the list at first, but I saw a attachment in one of the e-mails). The requirements of the attack (from the perspective of the paper I wrote) was that you had taken over 20 cable modem computers. From this viewpoint this could (of course) produce the required number of packets IMHO. Of course you could also clog up the bandwidth of just about any destination network with this requirement, but that is a different DoS. > Also have you done your cpu utilization tests on something a little > less ancient than a 450mhz system? How fast was the network? Well, that was my problem. I didn't have much equipment to work with which is why I sent it out to a list like this. I was hoping that someone else would be able to do a test on the equipment that they had and verify my results on different equipment. I noticed on the ICMP reassembly required timeout that the packets returned were from IP addresses that were in different parts of the attacks (it helped that I put random source IP addresses in the file). It was almost as if some of the packets I had sent to the Linux box were dropped during the attack. But again this could easily be a function of the slow CPU of the box. Ken --------------------------------------------------------------- Do not meddle in the affairs of wizards for they are subtle and quick to anger. Ken Hollis - Gandalf The White - gandalf@digital.net - O- TINLC WWW Page - http://digital.net/~gandalf/ Trace E-Mail forgery - http://digital.net/~gandalf/spamfaq.html Trolls crossposts - http://digital.net/~gandalf/trollfaq.html --B_3159000045_290789 Content-type: application/msword; name="Rose.rtf"; x-mac-creator="4D535744"; x-mac-type="52544620" Content-disposition: attachment Content-transfer-encoding: x-uuencode begin 644 Rose.rtf M>UQR=&8Q7&UA8UQA;G-I8W!G,3`P,#!<=6,Q(%QD969F,%QD969L86YG,3`S M,UQD969L86YG9F4Q,#,S>UQU<')[7&9O;G1T8FQ[7&8P7&9N:6Q<9F-H87)S M970R-39<9G!R<3)[7"I<<&%N;W-E(#`P,#(P,C`V,#,P-3`T,#4P,C`S?51I M;65S($YE=R!2;VUA;CM]>UQF,5QF;FEL7&9C:&%RUPJ M7'!A;F]S92`P,#`R,&(P-C`T,#(P,C`R,#(P,GU!UQF-EQF M;FEL7&9C:&%RUPJ7'!A;F]S92`P,#`R,#`P-3`P,#`P M,#`P,#`P,'U#;W5R:65R.WT->UQF,31<9FYI;%QF8VAAUQF M,3A<9FYI;%QF8VAAUPJ7&9A;'0@5&EM97-].WU[ M7&8R.#)<9G-W:7-S7&9C:&%RUQF M,3E<9G-W:7-S7&9C:&%RUPJ7'!A;F]S92`P,C!B,#8P M-#`R,#(P,C`R,#(P-'U!UPJ7&9A;'0@5&EM97-] M.WU[7&8R.#1<9G-W:7-S7&9C:&%RUPJ7&9A;'0@5&EM97-].WT->UQF,C@R7&9S=VESUPJ7&9A;'0@5&EM97-].WU[ M7&8R.#-<9G-W:7-S7&9C:&%RUPJ7&9A;'0@5&EM97-].WU[7&8R.#5<9G-W:7-S7&9C:&%R'0P(&AE861I;F<@,SM]>UQS-%QS8C(T,%QS838P7&ME M97!N7'=I9&-T;'!A'0P(`UH96%D:6YG(#8[?7M<'0P(&AE861I M;F<@.3M]>UPJ7&-S,3`@7&%D9&ET:79E($1E9F%U;'0@4&%R86=R87!H($9O M;G0[?7M<*EQCPU<'0Q-B!$;V-U;65N="!- M87`[?7M<'0P(%QS875T;W5P9"!T;V,@,3M]>PU<'0P(%QS875T;W5P9"`-=&]C(#,[?7M<'0P(%QS875T;W5P M9"!T;V,@.3M]>UQS,C9<=VED8W1L<&%R7'1Q8UQT>#0S,C!<='%R7'1X.#8T M,%QAUQS,CA<=VED8W1L<&%R7&%S<&%L<&AA7&%S<&YU;5QF M86%U=&]<;W5T;&EN96QE=F5L,%QA9&IUUQS,CE<=VED8W1L<&%R7&%S<&%L<&AA M7&%S<&YU;5QF86%U=&]<861J=7-T'0S-"!E;F1N;W1E('1E M>'0[?7M<*EQCUQS,SA<<6-<;&DQ,C8P M7')I-S(P7'=I9&-T;'!A'0[?7L-7',S.5QW:61C M=&QP87)<87-P86QP:&%<87-P;G5M7&9A875T;UQA9&IU'0S.2!";V1Y(%1E>'0@,SM]>UQS-#!<=VED8W1L<&%R7&%S<&%L M<&AA7&%S<&YU;5QF86%U=&]<861J=7-TUPJ#5QC#,V-C1<='@T-3@P7'1X-30Y-EQT>#8T M,3)<='@W,S(X7'1X.#(T-%QT>#DQ-C!<='@Q,#`W-EQT>#$P.3DR7'1X,3$Y M,#A<='@Q,C@R-%QT>#$S-S0P7'1X,30V-39<87-P86QP:&%<87-P;G5M7&9A M875T;UQA9&IU'0T,B!(5$U,(%!R969OUPJ7&-S-#,@7&%D M9&ET:79E(%QB7&8Q7&9S,S`@7'-B87-E9&]N,3`@:&0Q.WU]>UPJ7&QIUQL979E;&YU;6)EUQL979E;&YU M;6)EUQL979E;'1E>'1<;&5V M96QT96UP;&%T96ED-C8U-CE<)S`Q7'4M,SDQ,R!?.WU[7&QE=F5L;G5M8F5R MUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,3DW-C0Q7"

UQL:7-T;&5V96Q<;&5V96QN M9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V96QF;VQL M;WUQL979E;&YU;6)EUQL979E;&YU;6)EUQL:7-T M;F%M92`[?5QL:7-T:60R,C(R,#$R.7U[7&QI6)R:61[7&QIUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,3DW M-C0Q7"UQL:7-T;&5V96Q< M;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V M96QF;VQL;WUQL979E;&YU;6)EUQL979E;&YU;6)E#,V,#`@ M?7M<;&ES=&QE=F5L7&QE=F5L;F9C,C-<;&5V96QN9F-N,C-<;&5V96QJ8S!< M;&5V96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5LUQL979E;'1E>'0-7&QE=F5L=&5M<&QA=&5I M9#,R.#UQL:7-T;&5V96Q<;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL M979E;&IC;C!<;&5V96QF;VQL;WUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED M-C8U-CE<)S`Q7'4M,SDQ,R!?.WU[7&QE=F5L;G5M8F5RUQL:7-T;&5V96Q<;&5V96QN9F,R M,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C`-7&QE=F5L9F]L;&]W M,%QL979E;'-T87)T870Q7&QE=F5LUQL M979E;'1E>'1<;&5V96QT96UP;&%T96ED,3DW-C0Q7"UQL979E;&YU;6)EUQL979E;&YU;6)E#(Q-C`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`R7"UQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,3UQL979E;&YU;6)EUQL979E;'1E>'1<;&5V96QT M96UP;&%T96ED,38S.30S,UPG,#)<)S`W+CM]>UQL979E;&YU;6)EUQL:7-T;F%M92`[?5QL M:7-T:60W,3`V.3$P,#-]>UQL:7-T7&QIUQL979E;'1E>'1<;&5V96QT M96UP;&%T96ED,3$Q-3$T-5PG,#)<)S`P*3M]>UQL979E;&YU;6)EUQL:7-T;&5V96Q<;&5V96QN9F,T7&QE=F5L;F9C;C1<;&5V96QJ8S!< M;&5V96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5LUQL:7-T;&5V96Q< M;&5V96QN9F,R7&QE=F5L;F9C;C)<;&5V96QJ8S)<;&5V96QJ8VXR7&QE=F5L M9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5LUQL:7-T;&5V96Q<;&5V96QN9F,P7&QE=F5L M;F9C;C!<;&5V96QJ8S!<;&5V96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T M87)T870Q7&QE=F5LUQL979E;&YU;6)EUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,38S M.30S,UPG,#)<)S`W+CM]>UQL979E;&YU;6)EUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,3UQL979E;&YU;6)EUQL:7-T7&QIUQL:7-T;&5V96Q<;&5V96QN9F,R7&QE M=F5L;F9C;C)<;&5V96QJ8S)<;&5V96QJ8VXR7&QE=F5L9F]L;&]W,%QL979E M;'-T87)T870Q7&QE=F5LUQL:7-T;&5V96Q<;&5V96QN9F,P7&QE=F5L;F9C;C!<;&5V96QJ M8S!<;&5V96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5L MUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,38S.30S,PU<)S`R7"

UQL979E;'1E>'1< M;&5V96QT96UP;&%T96ED,3UQL979E;'1E>'1<;&5V96QT96UP;&%T96ED M.3@T,#UQL979E;&YU;6)EUQL979E;&YU;6)EUQL979E;&YU;6)E MUQL:7-T;&5V96Q< M;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C`-7&QE M=F5L9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5LUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED-C8U-CE<)S`Q7'4M M,SDQ,R!?.WU[7&QE=F5L;G5M8F5RUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED M,S(X-S$S7"UQL979E;&YU;6)EUQL:7-T;&5V96Q<;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL M979E;&IC;C!<;&5V96QF;VQL;WUQL:7-T;&5V96Q<;&5V96QN9F,R M,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V96QF;VQL;W

UQL979E;&YU M;6)EUQL979E;'1E>'1<;&5V M96QT96UP;&%T96ED-C8U-CE<)S`Q7'4M,SDQ,R!?.WU[7&QE=F5L;G5M8F5R MUQL979E;'1E>'0-7&QE=F5L=&5M<&QA=&5I9#$Y-S8T,5PG M,#%O.WU[7&QE=F5L;G5M8F5RUQL:7-T;&5V96Q<;&5V96QN M9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V96QF;VQL M;WUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,S(X-S$S7"UQL979E;&YU;6)EUQL:7-T7&QIUQL:7-T;&5V96P-7&QE=F5L;F9C,C-<;&5V96QN9F-N,C-< M;&5V96QJ8S!<;&5V96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T87)T870Q M7&QE=F5LUQL979E;'1E>'1<;&5V96QT M96UP;&%T96ED-C8U-CE<)S`Q7'4M,SDQ,R!?.WU[7&QE=F5L;G5M8F5RUQL979E M;'1E>'1<;&5V96QT96UP;&%T96ED,S(X-S$S7"UQL M979E;&YU;6)EUQL:7-T;&5V96Q<;&5V96QN9F,R,UQL M979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V96QF;VQL;WUQL:7-T;&5V96Q<;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL M979E;&IC;C!<;&5V96QF;VQL;WUQL979E;&YU;6)EUQL:7-T;&5V96Q<;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC M,`U<;&5V96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5L MUQL979E;'1E>'1<;&5V96QT96UP;&%T M96ED,S(X-S$S7"UQL979E;&YU;6)EUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED-C8U-CE<)S`Q7'4M,SDQ M,R!?.WU[7&QE=F5L;G5M8F5R#$T-#`@?7M< M;&ES=&QE=F5L7&QE=F5L;F9C,C-<;&5V96QN9F-N,C-<;&5V96QJ8S!<;&5V M96QJ8VXP7&QE=F5L9F]L;&]W,%QL979E;'-T87)T870Q7&QE=F5LUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,S(X M-S$S#5PG,#%<=2TS.3(Y(%\[?7M<;&5V96QN=6UB97)S.WU<9C$T7&-H8G)D MUQL M:7-T;&5V96Q<;&5V96QN9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E M;&IC;C!<;&5V96QF;VQL;WUQL:7-T;&5V96Q<;&5V96QN9F,R,UQL M979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V96QF;VQL;WUQL979E M;'1E>'1<;&5V96QT96UP;&%T96ED,3DW-C0Q7"#0S,C`@?7M<;&ES=&QE=F5L7&QE=F5L;F9C,C-<;&5V96QN9F-N,C-< M;&5V96QJ8S!<;&5V96QJ8VXP#5QL979E;&9O;&QO=S!<;&5V96QS=&%R=&%T M,5QL979E;'-P86-E,S8P7&QE=F5L:6YD96YT,'M<;&5V96QT97AT7&QE=F5L M=&5M<&QA=&5I9#8V-38Y7"UQL979E;&YU;6)EUQL M979E;'1E>'1<;&5V96QT96UP;&%T96ED,S(X-S$S7"UQL979E;&YU;6)EUQL:7-T;F%M92`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`Q7'4M,SDQ,R!?.WU[7&QE=F5L;G5M8F5R MUQL979E;'1E>'0-7&QE=F5L=&5M<&QA=&5I9#$Y-S8T,5PG M,#%O.WU[7&QE=F5L;G5M8F5RUQL:7-T;&5V96Q<;&5V96QN M9F,R,UQL979E;&YF8VXR,UQL979E;&IC,%QL979E;&IC;C!<;&5V96QF;VQL M;WUQL979E;'1E>'1<;&5V96QT96UP;&%T96ED,S(X-S$S7"UQL979E;&YU;6)EUQL979E;&YU;6)EUQL:7-T M;F%M92`[?5QL:7-T:60Q-S$Y-#UPJ7&QIUQL:7-T;W9EUQL:7-T;W9EUQL:7-T;W9EUQA=71H;W(@5VEL;&EA;2!++B!(;VQL:7-]>UQK97EW;W)DUQD;V-C;VUM($1A=&4@4W5B;6ET=&5D M.B`R,#`T+S`Q+S`W?7M<;W!EUQC MUQN;V9C:&%R2!.;VYE?7M<;F]F8VAA&QA='1O>65N7&5X<'-H#!<96YD;FAEUQH96%D97(@7'!AUQF:65L9'M<*EQF;&1I;G-T('M<9G,R,"`@4$%' M12!]?7M<9FQDUPJ7&9L9&ENUQF7EY>2!H M.FUM.G-S(&%M+W!M(B!]?7M<9FQD#@V M-#!<87-P86QP:&%<87-P;G5M7&9A875T;UQA9&IU'1A("Y]?7M<*EQP;G-E8VQV;#)<<&YU8VQT'1A M("Y]?7M<*EQP;G-E8VQV;#1<<&YL8VQTUPJ7'!N'1A("E] M?7M<*EQP;G-E8VQV;#9<<&YL8VQT'1A("E]?7M<*EQP;G-E8VQV;#=<<&YL M8W)M7'!N'1B("A]>UQP M;G1X=&$@*7U]>UPJ7'!N'1A("E]?7M<*EQP;G-E M8VQV;#E<<&YL8W)M7'!N'1B("A]>UQP;G1X=&$@*7U]7'!APU<<&%R($$@2!O=&AE M6]U(&UI9VAT(&9I;F0I+B`@270@:7,@86X@871T86-K($D@ M9&5V:7-E9"`H86YD($%&04E+(&ES(&%N(&]R:6=I;F%L(&%T=&%C:RD@22!C M86QL(")4:&4@4F]S92!A='1A8VLB+B`@5&AI'!IUPJ7&9L9&ENR!(65!%4DQ)3DL@(FAT='`Z M+R]D;V-S+G-U;BYC;VTO9&(O9&]C+S@Q-BTP-C`W+S9M-S,UUPJ7&1A=&%F:65L9"`-,#!D,&,Y96$W.68Y8F%C93$Q.&,X,C`P M86$P,#1B83DP8C`R,#`P,#`P,3UQCPT@ M*$%C8V5SUQCR`H M06-C97-S960@1&5C96UB97(@,BP@,C`P,RDN("!7:&EL92!T:&ES(&EN9F]R M;6%T:6]N(&ES(&YO="!O;B!T:&4@5410+"!I="!I2!F;W(@=&AE($E0('-T86-K('1O(&%C8V5P="!F"!B;W@@&-E961E9"(@9F]R(&%L;"!P M86-K971S+B`@3&EN=7@@'0@+49-,`U<<&%R(&YE;65S:7,@:6-M<"`M4R!75RY65BY65BY6 M5B`M1"`Q.3'0@+48X,3`P#5QP87(@?7M40U`@9FER"!86"`M>2!967M<*EQB:VUK96YD M($],15],24Y+,GT@+5`@4'1C<&1A=&$N='AT("U&33`-7'!A"!86"`M>2!962`M4"!0=&-P9&%T82YT>'0@7&5N9&%S M:"!&33@Q,#`-7'!AU5$4"!F:7)S="!FUQF,EQFU=H M97)E.@U<<&%R('U<=')O=V0@7'1R9V%P:#$P.%QT&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@Q-30X(%QC96QL>#$T-#`- M7&-L=F5R=&%L=%QC;&)R9')T7&)R9')H86ER7&)R9')W,3`@7&-L8G)D&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R,S0P(%QC M96QL>#DS-C!<<&%R9"!<=VED8W1L<&%R7&EN=&)L7&%S<&%L<&AA7&%S<&YU M;5QF86%U=&]<861J=7-T&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R-S`P(%QC96QL>#4Y-#!<8VQV M97)T86QT7&-L8G)D&QR=&)<8VQF='-7:61T:#-<8VQW M5VED=&@Q.#`P(%QC96QL>#,R-#!<8VQV97)T86QT7&-L8G)D&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R-S`P(%QC96QL>#4Y-#!< M8VQV97)T86QT7&-L8G)DUQF,EQF&QR=&)<8VQF='-7:61T:#-<8VQW M5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R,S0P(%QC96QL>#DS-C!< M&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R M-S`P(%QC96QL>#4Y-#!<8VQV97)T86QT7&-L8G)DUQF,EQFUQF,EQF&QR=&)<8VQF='-7 M:61T:#-<8VQW5VED=&@Q-30X(%QC96QL>#$T-#`-7&-L=F5R=&%L=%QC;&)R M9')T7&)R9')H86ER7&)R9')W,3`@7&-L8G)D&QR M=&)<8VQF='-7:61T:#-<8VQW5VED=&@R,S0P(%QC96QL>#DS-C!<&QR=&)<8VQF='-7:61T M:#-<8VQW5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R,S0P(%QC96QL M>#DS-C!<&QR=&)<8VQF='-7:61T M:#-<8VQW5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF='-7:61T M:#-<8VQW5VED=&@R-S`P(%QC96QL>#4Y-#!<8VQV97)T86QT7&-L8G)DUQF,EQFUQF,EQF&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@Q-30X(%QC M96QL>#$T-#`-7&-L=F5R=&%L=%QC;&)R9')T7&)R9')H86ER7&)R9')W,3`@ M7&-L8G)D&QR=&)<8VQF='-7:61T:#-<8VQW5VED M=&@R,S0P(%QC96QL>#DS-C!<&QR=&)<8VQF='-7:61T:#-<8VQW M5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R,S0P(%QC96QL>#DS-C!< M&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF M='-7:61T:#-<8VQW5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF='-7:61T:#-<8VQW5VED=&@R,S0P M(%QC96QL>#DS-C!<&QR=&)< M8VQF='-7:61T:#-<8VQW5VED=&@Q,#@P(%QC96QL>#&QR M=&)<8VQF='-7:61T:#-<8VQW5VED=&@Q,#@P(%QC96QL>#&QR=&)<8VQF='-7:61T:#-<8VQW5VED M=&@R,S0P(%QC96QL>#DS-C!<U-E M="!U<"!T:&4@<&%Y;&]A9"!D871A('-O('1H870@=V4@:&%V92!A(")L96=A M;"(@'0@/2`B04YE;65S:7-40U!$871A0DYE;65S:7-40U!$82(-7'!A'0@/2`B04YE;65S:7-51%!$871A04).96UEUQF M:65L9'M<*EQF;&1I;G-T('L-($A94$523$E.2R`B:'1T<#HO+VYE;65S:7,N MUQF;&1RWM<*EQD871A9FEE;&0@#3`P M9#!C.65A-SEF.6)A8V4Q,3AC.#(P,&%A,#`T8F$Y,&(P,C`P,#`P,#$W,#`P M,#`P,C(P,#`P,#`V.#`P-S0P,#UQF;&1RR`H06-C97-S960@1&5C96UB M97(@-"P@,C`P,RDN("!4:&4@97AC96P@;W5T<'5T('=I=&@@82!N86UE(&]F M(")]>UQB(`UA='1A8VMP+F)A='U[(B!A;F0@(GU[7&(@871T86-K8FEG+F)A M='U[(B!W;W5L9"!B92!P;&%C960@;VX@=&AE(&-O;7!R;VUI"!P86-K971S("AO9B!M86YY M('1H;W5S86YDUQB(&%T=&%C:W`N8F%T?7L@ M871T86-K:6YG('1H92!(5%10('!OUQF,EQF'0@+48X,3`P#5QP87(@ M;F5M97-I"`R-30R,R`M>2`X,"`M M4"!0=&-P9&%T82YT>'0@+48X,3`P#5QP87(@;F5M97-I"`R-#,P,"`M>2`X,"`M4"!0=61P9&%T82YT>'0@+48X,3`P#5QP87(@ M?5QP87)D7'!L86EN(%QS,3=<=VED8W1L<&%R7&%S<&%L<&AA7&%S<&YU;5QF M86%U=&]<861J=7-TSH-7'!AUQB(%1H92!A M='1A8VL@=V]U;&0@8F4@UQB(&-O=6YT97)M96%S M=7)E2!T;R!T2!R;W5T97(L M(&AO<"!B>2!H;W`L('=H:6-H(&UA8VAI;F5S(&%R92!S96YD:6YG(&]U="!T M:&4@86YO;6%L;W5S('!A8VME=',N("!);G1E