Dan,
http://people.fedoraproject.org/~dwalsh/SELinux/F11/system_userdomain.patch
It seems to me that the patch removes postgresql_role() from the
userdom_unpriv_user_template(), but it can prevent staff_t to access
SE-PostgreSQL.
Could you fix it please?
--
OSS Platform Development Division, NEC
KaiGai Kohei <kaigai(a)ak.jp.nec.com>