It is a multi-user setup with two accounts (mine and my wife's). My account has sudo access while hers doesn't. We each log in separately, and use fast user switching.
My thinking was that if I could set things up so that a non-admin user could not unmount the disk, then I'd prevent the...