Skip to content
arrow_back
search
ISM-1589 policy ASD Information Security Manual (ISM)

Enable MTA-STS for Secure Email Transport

Ensure email is encrypted during transfer between servers to enhance security.

record_voice_over

Plain language

This control is about setting up a system called MTA-STS to make sure emails sent from your server to another are always encrypted. If you don't do this, sensitive information in those emails, like financial details or personal data, could be easily intercepted by cyber criminals during the transfer.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

MTA-STS is enabled to prevent the unencrypted transfer of emails between email servers.
policy ASD Information Security Manual (ISM) ISM-1589
priority_high

Why it matters

Without MTA-STS, sensitive emails risk unencrypted transit, making them vulnerable to interception and exposure of confidential data.

settings

Operational notes

Regularly verify the MTA-STS policy file and DNS record for changes or errors that could disrupt enforced TLS delivery.

Mapping detail

Mapping

Direction

Controls