Skip to content
arrow_back
search
ISM-0628 policy ASD Information Security Manual (ISM)

Implementing Secure Network Gateways

Set up gateways to securely connect networks from different security levels.

record_voice_over

Plain language

This control is about setting up secure gateways when connecting different networks, especially if those networks have different levels of security. Imagine a school network and a public library network needing to talk to each other - if you don't have something to filter and protect the data that passes between them, sensitive information from the school might accidentally be exposed.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Gateways are implemented between networks belonging to different security domains.
policy ASD Information Security Manual (ISM) ISM-0628
priority_high

Why it matters

Without gateways between security domains, traffic can bypass boundary controls, enabling unauthorised cross-domain access and sensitive data leakage.

settings

Operational notes

Review inter-domain gateway rules (allowlists, routing, filtering/inspection) and validate only approved cross-domain services can traverse the boundary; fix drift promptly.

Mapping detail

Mapping

Direction

Controls