Skip to content
arrow_back
search
ISM-1320 policy ASD Information Security Manual (ISM)

Avoid Using MAC Filtering for Wireless Access Control

Do not use MAC address filtering to control devices connecting to your wireless network.

record_voice_over

Plain language

The control advises against using MAC address filtering to decide which devices can connect to your wireless network. This is crucial because MAC addresses can be easily faked, meaning someone with the right skills could pretend to be an authorised device and gain access to your network, potentially compromising your security.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2018

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

MAC address filtering is not used to restrict which devices can connect to wireless networks.
policy ASD Information Security Manual (ISM) ISM-1320
priority_high

Why it matters

Relying on MAC filtering can permit unauthorised wireless access, as attackers can easily spoof permitted MAC addresses.

settings

Operational notes

Verify WLAN configs have MAC filtering disabled; enforce WPA2/3-Enterprise with 802.1X, and review settings after changes.

Mapping detail

Mapping

Direction

Controls