Skip to content
arrow_back
search
ISM-1436 policy ASD Information Security Manual (ISM)

Segregate Critical Services to Prevent DoS Attacks

Critical online services are kept separate to reduce the risk of service disruption from attacks.

record_voice_over

Plain language

This control is about keeping your most important online services separate from others to reduce the risk of them being disrupted by denial-of-service (DoS) attacks. These attacks can overwhelm your system, like a traffic jam clogging a road, preventing legitimate users from accessing your service. By segregating critical services, you minimise the chances of key parts of your business getting caught up in such disturbances.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Critical online services are segregated from other online services that are more likely to be targeted as part of denial-of-service attacks.
policy ASD Information Security Manual (ISM) ISM-1436
priority_high

Why it matters

Without segregation, DoS attacks on exposed services can also disrupt critical online services, causing outages.

settings

Operational notes

Periodically validate segmentation rules so critical services remain isolated from DoS-prone public-facing systems.

Mapping detail

Mapping

Direction

Controls