SELinux: do not check open perms if they are not known to policy