Skip to content
arrow_back
search
ISM-1236 policy ASD Information Security Manual (ISM)

Blocking Malicious and Anonymous Domain Names

Web filters block known harmful domains and those registered anonymously or for free.

record_voice_over

Plain language

This control is about using web filters to automatically block access to harmful websites, including those that hide who registered them or can be set up for free. If we don't do this, people in your organisation could accidentally visit dangerous websites, leading to data breaches or security issues.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Malicious domain names, dynamic domain names and domain names that can be registered anonymously for free are blocked by web content filters.
policy ASD Information Security Manual (ISM) ISM-1236
priority_high

Why it matters

If malicious, dynamic or free anonymous domains aren’t blocked by web filtering, users may browse to phishing/malware sites, causing credential theft, malware infection and data loss.

settings

Operational notes

Keep web content filter threat feeds current, enable blocking for malicious, dynamic DNS and free anonymous domains, and review web proxy/DNS logs to tune categories and add emerging domains.

Mapping detail

Mapping

Direction

Controls