How to enable SELinux user confinement? What to consider?

So in this example, ( which I have as a low priority project atm ) I start the toolbox, get fedora:latest , download, installa browser that i want confined to the toolbox ( including packages ) and change it’s SELinux properties.

I did manage to do the install but was stuck at keeping packages inside the toolbox and changing selinux properties. Those I can do from a rootful container but not toolbox. . . There’s a lot more I can add here . . .

I guess another question is can you change SELinux context for things inside the toolbox?