I added "allow-unknown = deny" in semanage.conf and ran semodule -R [root@dhcp231-146 ~]# semodule -R error parsing semanage configuration file: syntax error semodule: Could not create semanage handle semodule: handle.c:123: semanage_is_connected: Assertion `sh != ((void *)0)' failed. Segmentation fault It was supposed to bail (allow-unknown is not a valid entry, it should be handle-unknown) but it wasn't supposed to segfault. Maybe someone who knows this code can find/fix it really quickly, if not I'm sure I'll get to look at it when it gets to the top of my list in 10 or 12 months :) policycoreutils-2.0.43-2.fc9.x86_64 -Eric -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.