Skip to content
arrow_back
search
ISM-1293 policy ASD Information Security Manual (ISM)

Decryption of Files for Content Filtering

Files are decrypted at gateways to ensure they're safe before passing through.

record_voice_over

Plain language

This control is about making sure that any files coming into or leaving your organisation are safe by decrypting them at your gateways to check their contents. It matters because if you don't check these files, harmful content could enter your systems or sensitive information could leave without your knowledge, leading to data breaches or losses.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Encrypted files imported or exported via gateways or CDSs are decrypted in order to undergo content filtering checks.
policy ASD Information Security Manual (ISM) ISM-1293
priority_high

Why it matters

Without decrypting files for content filtering, malicious payloads can traverse gateways/CDSs unnoticed, causing data breaches and information leakage.

settings

Operational notes

Configure gateways/CDSs to decrypt inbound and outbound encrypted files before content filtering, and maintain key/certificate handling so inspection remains effective.

Mapping detail

Mapping

Direction

Controls