From 2151d4e5c4f11f51dea4b5806440e4e2412b90fb Mon Sep 17 00:00:00 2001 From: Guangwen Feng Date: Thu, 18 Nov 2021 11:06:58 +0800 Subject: [PATCH] [zh] Update apparmor.md Signed-off-by: Guangwen Feng --- content/zh/docs/tutorials/clusters/apparmor.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/content/zh/docs/tutorials/clusters/apparmor.md b/content/zh/docs/tutorials/clusters/apparmor.md index 786fb2ae18..caca769b44 100644 --- a/content/zh/docs/tutorials/clusters/apparmor.md +++ b/content/zh/docs/tutorials/clusters/apparmor.md @@ -320,7 +320,7 @@ kubectl get events | grep hello-apparmor 我们可以通过检查该配置文件的 proc attr 来验证容器是否实际使用该配置文件运行: ```shell -kubectl exec hello-apparmor cat /proc/1/attr/current +kubectl exec hello-apparmor -- cat /proc/1/attr/current ``` ``` k8s-apparmor-example-deny-write (enforce) @@ -330,7 +330,7 @@ k8s-apparmor-example-deny-write (enforce) 最后,我们可以看到如果试图通过写入文件来违反配置文件,会发生什么情况: ```shell -kubectl exec hello-apparmor touch /tmp/test +kubectl exec hello-apparmor -- touch /tmp/test ``` ``` touch: /tmp/test: Permission denied