Right now ThinLinc only really works properly if users get the unconfined_u context. Some customers might want to lock down what their users can do, e.g. by using the user_u and staff_u contexts included with the reference policy. We should update our SELinux profile to allow use even with restricted users.