If you notice that a process is running in the
unlabeled_t domain, the
first question to ask is how it got there.
Well, one way is to have a process running in a known domain, like
screen_t, after which the SELinux policy module that provides this
domain is removed from …