Skip to content
arrow_back
search
ISM-1962 policy ASD Information Security Manual (ISM)

Disable SMBv1 Protocol on Networks

Ensure SMB version 1 is not active on network systems to enhance security.

record_voice_over

Plain language

Disabling the SMB version 1 protocol on your network means turning off an old way computers used to share files with each other. This matters because keeping it on is like leaving the back door open; cyber attackers can use it to get into your systems and steal or damage your information.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

SMB version 1 is not used on networks.
policy ASD Information Security Manual (ISM) ISM-1962
priority_high

Why it matters

Leaving SMBv1 enabled allows attackers to exploit known vulnerabilities for data theft, disruption or ransomware attacks.

settings

Operational notes

Regularly verify SMBv1 is disabled on all hosts; enforce via GPO/baselines and audit to prevent re-enablement.

Mapping detail

Mapping

Direction

Controls