Skip to content
arrow_back
search
ISM-1978 policy ASD Information Security Manual (ISM)

Centralised Logging for Server Application Events

Log important events centrally for applications on internet-facing servers for security monitoring.

record_voice_over

Plain language

This control is about making sure that important events happening on your company's internet-connected servers are collected in one central place. This is crucial because it helps in spotting security issues early on. If this isn't done, you might miss a security breach, which could lead to loss of data, harm to your business's reputation, or costly downtime.

Framework

ASD Information Security Manual (ISM)

Control effect

Detective

Classifications

NC, OS, P, S, TS

ISM last updated

Nov 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Security-relevant events for server applications on internet-facing servers are centrally logged.
policy ASD Information Security Manual (ISM) ISM-1978
priority_high

Why it matters

Without centralised logging of security-relevant server application events on internet-facing servers, attacks may be missed, delaying response and increasing breach impact.

settings

Operational notes

Forward server application security events from internet-facing servers to a central log platform, retain them, and alert on failures, auth anomalies, and error spikes.

Mapping detail

Mapping

Direction

Controls