dcc & dynamic system user

Hi guys!

I'm in the process of packaging dcc (Distributed Checksum
Clearinghouse), a application somewhat like razor.
My package will provide both a client and a server (in seperate binary

The client wants to write to stuff in /var/lib/dcc and read
non-world-readable passwords from /etc/dcc;  also, I'd rather not run
the server as root (which is not necessary, because it listens on port

Would it be ok to dynamically allocate a dcc group and user (as per
policy 11.9)?

