Skip to content
arrow_back
search
ISM-1628 policy ASD Information Security Manual (ISM)

Prevent Anonymity Network Traffic in Outbound Connections

Ensure outbound connections to anonymous networks are blocked for security.

record_voice_over

Plain language

This control means you need to stop computers in your organisation from connecting to networks that hide where internet traffic is coming from, like Tor. It's important because if someone in your organisation can browse anonymously, they might do something harmful or illegal without being traced, causing security risks or legal issues for your business.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Oct 2020

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Outbound network connections to anonymity networks are blocked.
policy ASD Information Security Manual (ISM) ISM-1628
priority_high

Why it matters

If anonymity networks are reachable outbound, staff or malware can exfiltrate data and evade monitoring, increasing insider-threat and legal/compliance risk.

settings

Operational notes

Block outbound Tor/I2P and known anonymity VPN endpoints at the firewall/proxy, and review logs and threat intel regularly to catch new exit nodes.

Mapping detail

Mapping

Direction

Controls