Dan, http://people.fedoraproject.org/~dwalsh/SELinux/F11/system_userdomain.patch It seems to me that the patch removes postgresql_role() from the userdom_unpriv_user_template(), but it can prevent staff_t to access SE-PostgreSQL. Could you fix it please? -- OSS Platform Development Division, NEC KaiGai Kohei <kaigai at ak.jp.nec.com>