SUMMARY: Disabling su

> There are a number of "accounts" on my system which everyone needs access
> to, therefore the password is known by all. These accounts though, run a
> menu from the .profile. What I want to do is stop people su'ing to
> these accounts, therefore by-passing the menu... but at the same time
> allow them to su to other accounts.
Differing viewpoints, but essentially there is no users attribute to set
for this kind of feature.

Hacks included sudo, su2 and something proprietary soon to be released.

Think I'll have to go back to my original plan (which I didn't wanna do),
and hack the sources for BSD's su to look at a file similar to
cron.deny. In the meantime, I've changed the permissions on su, so that
no-one can execute apart from root.

