Skip to content
arrow_back
search
ISM-1943 policy ASD Information Security Manual (ISM)

Enforce Certificate and User Mapping in AD Services

Ensure certificates are accurately matched to users within Active Directory.

record_voice_over

Plain language

This control ensures that the digital certificates used for security in your organisation are correctly matched to the people who need them. It's important because if a certificate isn't linked to the right user, it could lead to unauthorised access or data breaches, where someone might gain access to sensitive information they shouldn't see.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Strong mapping between certificates and users is enforced.
policy ASD Information Security Manual (ISM) ISM-1943
priority_high

Why it matters

Mismatched certificates and users can lead to unauthorised access, exposing sensitive data and compromising organisational integrity.

settings

Operational notes

Regularly audit user-certificate mappings in AD; remove stale or misaligned entries to prevent security breaches and ensure compliance.

Mapping detail

Mapping

Direction

Controls