Sir user_u is a generic user identity for Linux users who have no SELinux user identity defined why is user_u authorized for roles sysadm_r and system_r why is the user_r allowed to make a transition to sysadm_r and system_r ( as in rbac file) Thanking you -- fedora-selinux-list mailing list fedora-selinux-list@xxxxxxxxxx http://www.redhat.com/mailman/listinfo/fedora-selinux-list