Hey friends,
I want that whoever tries to use either su - for any user and anybody tring to use root password has to enter that password twice.
See /usr/share/doc/pam*/rfc86.0.txt. Read the part about stacking, consider stacking the same auth module twice, both being _required_. Not tested, but it could work.
-- HaJo Schatz <hajo@xxxxxxxx> http://www.HaJo.Net
PGP-Key: http://www.hajo.net/hajonet/keys/pgpkey_hajo.txt