On systems using
SELinux,
applications are not allowed to execute code from binaries or libraries that are in a directory
that has the
tmp_t SELinux type. It is practically guaranteed that
any system-wide temporary directory will be configured to have this type.
Therefore, in order to run
certusine on these systems,
it is necessary to specify a directory using the
org.sqlite.tmpdir
system property. As an example, the
OCI image
configures this property to use
/certusine/var to store the temporary
native libraries.