Skip to content
arrow_back
search
ISM-1385 policy ASD Information Security Manual (ISM)

Segregation of Administrative Infrastructure from Networks

Administrative systems are isolated from the main network and internet to enhance security.

record_voice_over

Plain language

This control means keeping the systems that manage your organisation's infrastructure separate from the regular office network and the internet. It's important because if these critical systems are compromised, hackers could gain control over your essential operations, leading to data breaches or disruptions.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Administrative infrastructure is segregated from the wider network and the internet.
policy ASD Information Security Manual (ISM) ISM-1385
priority_high

Why it matters

If administrative infrastructure is not segregated from the wider network and internet, attackers can reach privileged management systems and pivot into production to disrupt services or exfiltrate sensitive data.

settings

Operational notes

Verify admin segments are isolated via VLANs/routing and strict firewall ACLs; require access via a hardened jump host; confirm no direct internet connectivity or unintended cross-network routes exist.

Mapping detail

Mapping

Direction

Controls