On Wed, Sep 25, 2019 at 5:57 PM Tom Lane <t...@sss.pgh.pa.us> wrote: <snip>
> I don't see how the addition of a new permissions check could sanely > be back-patched unless it were to default to "allow", which seems like > an odd choice. > > regards, tom lane That makes sense. Alternatively, we could back patch just the hook to at least allow the option for an integrator to implement MAC using an extension. Then the sepgsql changes could be back patched once the SELinux policy has been merged into Fedora. Thank you