Skip to content
arrow_back
search
ISM-1284 policy ASD Information Security Manual (ISM)

Ensure Content Validation for Gateway Files

Check files coming in and out of gateways to ensure they meet security standards.

record_voice_over

Plain language

This control is about making sure that any files moving in or out through your organisation's computer gateways (like email or file transfer systems) are checked to meet security standards. This is crucial because if harmful files get in, they could cause serious problems, like data breaches, operational failures, or financial loss.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Files imported or exported via gateways or CDSs undergo content validation.
policy ASD Information Security Manual (ISM) ISM-1284
priority_high

Why it matters

Without content validation at gateways/CDSs, malicious or unauthorised files can enter or leave, causing data breaches, system compromise and financial loss.

settings

Operational notes

Maintain gateway/CDS content validation by updating signatures/rules, testing import/export samples, and reviewing validation logs to tune allow/deny policies and catch bypasses.

Mapping detail

Mapping

Direction

Controls