# Begin /etc/pam.d/system-password

# use sha512 hash for encryption, use shadow, and try to use any previously
# defined authentication token (chosen password) set by any prior module
password  required    pam_pwquality.so  retry=3
password  required    pam_unix.so       sha512 shadow use_authtok

# End /etc/pam.d/system-password