Skip to content
arrow_back
search
ISM-1312 policy ASD Information Security Manual (ISM)

Changing Default SNMP Community Strings on Devices

To enhance security, change default SNMP passwords and disable write access on network devices.

record_voice_over

Plain language

This control is about making sure the 'locks' on our digital doors aren't left on the factory settings. Many network devices use a feature called SNMP for tasks like monitoring. If the default settings aren't changed, it can be easy for outsiders to sneak in and mess with our systems.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

All default SNMP community strings on network devices are changed and write access is disabled.
policy ASD Information Security Manual (ISM) ISM-1312
priority_high

Why it matters

Leaving default SNMP community strings in place (or allowing write access) enables device takeover, outages, and unauthorised configuration changes.

settings

Operational notes

Audit all devices for default SNMP community strings; set unique read-only strings, disable SNMP write, and log/alert on SNMP configuration changes.

Mapping detail

Mapping

Direction

Controls