I am not sure which bugzilla report this applies to but ... 1. With the latest policy installed (1.10.2-5) and 2. after running setfiles /etc/security/selinux/file... /dev because the /dev/loop devices are a variety of selinux attributes 3. I successfully was able to install a kernel with enforcing=1 Progress! Of course I found another bug but ... that is expected. Gene