On Thursday, December 23, 2010 10:10:03 am Daniel J Walsh wrote: > sshd_t is not allowed to transition to unconfined_t by this rule. It is > allowed to transition via the rule: > > allow sshd_t unpriv_userdomain : process { transition signal } ; Thanks for that. I was misleaded by the "unconfined_t" on the output by being on the target side of the rule but now I know there might be type attributes there as well! Thanks, Jorge -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux