specifies SID contexts for each initial SID that are reserved for system initialisation or predefined objects
sid kernel system_u:system_r:kernel_t sid init system_u:system_r:init_t sid proc system_u:object_r:proc_t