Dan, http://people.fedoraproject.org/~dwalsh/SELinux/F11/system_userdomain.patch It seems to me that the patch removes postgresql_role() from the userdom_unpriv_user_template(), but it can prevent staff_t to access SE-PostgreSQL. Could you fix it please? -- OSS Platform Development Division, NEC KaiGai Kohei <kaigai@xxxxxxxxxxxxx> -- fedora-selinux-list mailing list fedora-selinux-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-selinux-list