Skip to content
arrow_back
search
E8-RA-ML1.3 bolt ASD Essential Eight

Prevent privileged accounts from accessing internet, email, and web services

Block admin accounts from internet and email to enhance security.

record_voice_over

Plain language

This control ensures that users with special access to your computer systems, known as privileged accounts, can't use the internet, email, or visit websites. This matters because without these restrictions, a hacker could take over these accounts and access sensitive information or cause harm to your business.

Framework

ASD Essential Eight

Control effect

Preventative

E8 mitigation strategy

Restrict administrative privileges

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML1

Official control statement

Privileged accounts (excluding those explicitly authorised to access online services) are prevented from accessing the internet, email and web services.
bolt ASD Essential Eight E8-RA-ML1.3
priority_high

Why it matters

Admin account internet access can lead to credential theft via phishing, risking total organisational compromise.

settings

Operational notes

Regularly audit privileged accounts and enforce blocks on web, email and internet access, allowing only explicitly authorised exceptions.

Mapping detail

Mapping

Direction

Controls