Skip to content
arrow_back
search
ISM-1289 policy ASD Information Security Manual (ISM)

Ensure Content Filtering of Archive Files at Gateways

Files in archive formats must be opened for security checks when they pass through security gateways.

record_voice_over

Plain language

This control requires that files in archive formats, like ZIP or RAR, are checked for security problems when they pass through your organisation's gateways or transfer points. This is crucial because failing to do so could allow dangerous content, such as malware, to slip into your network undetected, potentially causing data loss or system damage.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Archive files imported or exported via gateways or CDSs are unpacked in order to undergo content filtering checks.
policy ASD Information Security Manual (ISM) ISM-1289
priority_high

Why it matters

Failing to filter archive files at gateways can allow hidden malware to infect systems, leading to data breaches or operational disruption.

settings

Operational notes

At gateways/CDSs, automatically unpack archives (nested too) before scanning; keep signatures current and test with passworded/corrupt samples to verify detection.

Mapping detail

Mapping

Direction

Controls