Do not allow users to reuse recent passwords. This can be accomplished by using the
remember
option for the pam_pwhistory
PAM module.
In the file /etc/pam.d/system-auth
, make sure the parameter remember
is
present and it has a value equal to or greater than
For example:
password pam_pwhistory.so use_authtok remember=