#%PAM-1.0
#root可以不经过认证直接运行su
auth sufficient pam_rootok.so
#wheel组的账号可以不经过认证运行su
#auth sufficient pam_wheel.so trust use_uid
#wheel组的账号才可以运行su
auth required pam_wheel.so use_uid
auth include system-auth
account sufficient pam_succeed_if.so uid = 0 use_uid quiet
account include system-auth
password include system-auth
session include system-auth
session optional pam_xauth.so
#root可以不经过认证直接运行su
auth sufficient pam_rootok.so
#wheel组的账号可以不经过认证运行su
#auth sufficient pam_wheel.so trust use_uid
#wheel组的账号才可以运行su
auth required pam_wheel.so use_uid
auth include system-auth
account sufficient pam_succeed_if.so uid = 0 use_uid quiet
account include system-auth
password include system-auth
session include system-auth
session optional pam_xauth.so