Skip to content
arrow_back
search
ISM-1223 policy ASD Information Security Manual (ISM)

Methods for Sanitising Network Device Memory

Network device memory is cleaned by following specific guidance or doing a reset and reinstalling firmware.

record_voice_over

Plain language

This control is about thoroughly erasing any sensitive information that might be stored in the memory of network devices, like routers or switches, before they are disposed of or reused. If this isn't done properly, there's a risk that unauthorised people could access your data, potentially leading to data breaches or privacy violations.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Nov 2021

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Memory in network devices is sanitised using the following processes, in order of preference: - following device-specific guidance provided in evaluation documentation - following vendor sanitisation guidance - loading a dummy configuration file, performing a factory reset and then reinstalling firmware.
policy ASD Information Security Manual (ISM) ISM-1223
priority_high

Why it matters

If network device memory isn’t sanitised, residual configs, credentials or keys may be recovered, enabling unauthorised access and data compromise.

settings

Operational notes

Sanitise device memory before disposal/transfer: use evaluation docs first, then vendor guidance; otherwise load a dummy config, factory reset, and reinstall firmware.

Mapping detail

Mapping

Direction

Controls