I used to use the RBAC system for a year but then after a debian dist upgrade my system wouldn't work with it (not kernel upgrade) It basically disallowed everything.
Could you show us all a good basic rbac security policy for 2.4.x servers that have ssh users aswell as run apache and the normal things (mail etc).
A little security would be better then none. But I had, with RBAC, apps that would suddenly break after running for a week because they couldn't access their logfile (because they didn't access it during the discovery phase).