Skip to content
arrow_back
search
ISM-1392 policy ASD Information Security Manual (ISM)

Restrict File Modifications via Path Rules

Only certain users can change files and folders as allowed by system rules.

record_voice_over

Plain language

This control is about making sure that only the right people can change important files and folders on your computer system. It matters because if everyone could make changes, it could lead to accidental or malicious damage, like removing critical files or installing harmful programs that could disrupt your business.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

When implementing application control using path rules, only approved users can modify approved files and write to approved folders.
policy ASD Information Security Manual (ISM) ISM-1392
priority_high

Why it matters

If path rules allow unauthorised changes to approved files or folders, attackers can tamper with trusted apps, causing compromise or outages.

settings

Operational notes

Review and test path rules regularly so only approved users can write to approved folders and modify approved files; monitor and audit rule changes.

Mapping detail

Mapping

Direction

Controls