Skip to content
arrow_back
search
ISM-1030 policy ASD Information Security Manual (ISM)

Deploy NIDS/NIPS for Gateway Traffic Monitoring

Install and configure systems to detect and alert on unauthorized network traffic past the main firewall.

record_voice_over

Plain language

This control is about placing systems that will watch over your network right inside your main firewall. These systems alert you if something suspicious gets through, which is crucial because it helps catch potential threats before they can do damage. Without it, harmful activities could go unnoticed, leading to data breaches or system disruptions.

Framework

ASD Information Security Manual (ISM)

Control effect

Detective

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

A NIDS or NIPS is located immediately inside the outermost firewall for gateways and configured to generate event logs and alerts for network traffic that contravenes any rule in a firewall ruleset.
policy ASD Information Security Manual (ISM) ISM-1030
priority_high

Why it matters

Without a NIDS/NIPS inside the outermost gateway firewall, traffic breaching firewall rules may go unlogged and undetected, enabling compromise.

settings

Operational notes

Place the NIDS/NIPS immediately inside the outermost gateway firewall and tune signatures to alert/log any traffic that contravenes firewall rules.

Mapping detail

Mapping

Direction

Controls