Dan,
http://people.fedoraproject.org/~dwalsh/SELinux/F11/system_userdomain.patch
It seems to me that the patch removes postgresql_role() from the userdom_unpriv_user_template(), but it can prevent staff_t to access SE-PostgreSQL.
Could you fix it please?