Skip to content
arrow_back
search
ISM-1427 policy ASD Information Security Manual (ISM)

Prevent IP Source Address Spoofing in Gateways

Gateways block fake IP addresses to protect network entries.

record_voice_over

Plain language

Gateways, which are entry points to your network, need to block any fake addresses trying to come in. This is like having a bouncer at a club who checks IDs to make sure only real, authorised people get in. Without this check, malicious actors could pretend to be someone they’re not and sneak into your network, potentially accessing sensitive data or causing harm.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Gateways perform ingress traffic filtering to detect and prevent IP source address spoofing.
policy ASD Information Security Manual (ISM) ISM-1427
priority_high

Why it matters

If gateways don't filter spoofed source IPs, attackers can masquerade as trusted hosts, bypass ACLs and enable attacks.

settings

Operational notes

Implement ingress anti-spoofing (BCP38/uRPF) on gateways; maintain allowlists for expected source ranges and alert on drops.

Mapping detail

Mapping

Direction

Controls