> Why even put it there. shouldnt it just be in /usr/sbin/ or something? > Then I would need to grant permission to /usr/bin in both openvpn_sudo_t AND openvpn_t ... or am I missing something? Also, one of the scripts creates ".route-up-started" (though that is executed by root and within the /etc/init.d/openvpn domain), so I am not sure how this is going to work out. -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux