On Wed, 2013-05-08 at 11:38 -0400, Daniel J Walsh wrote: > I think we had a capability bug. Just add pam_rootok to /etc/pam.d/newrole > and it should work better for you. > I Tried that and it does not fix the problem here > I prefer to use sudo for transitioning my user role. I agree although its a bit annoying that one has to specify -u if one wants to use sudo to run a command on behalf of anyone else but root > > -- > selinux mailing list > selinux@xxxxxxxxxxxxxxxxxxxxxxx > https://admin.fedoraproject.org/mailman/listinfo/selinux -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux