Skip to content
arrow_back
search
ISM-0534 policy ASD Information Security Manual (ISM)

Disable Unused Network Device Ports

Network devices should have any unused physical ports turned off to prevent unauthorized access.

record_voice_over

Plain language

This control means turning off any network ports that aren't being used in your organisation's devices, like routers or switches. It matters because if these ports are left on, someone could plug in and access your network without permission, which could lead to sensitive data being stolen or your systems being hacked.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2018

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Unused physical ports on network devices are disabled.
policy ASD Information Security Manual (ISM) ISM-0534
priority_high

Why it matters

Leaving unused ports active can allow unauthorised network access, enabling rogue device connection, lateral movement and potential data breaches.

settings

Operational notes

Regularly audit switch/router physical ports and administratively shut unused ones; alert on port state changes to detect unauthorised connections quickly.

Mapping detail

Mapping

Direction

Controls