ISM-0637

Gateways implement a demilitarised zone if external parties require access to an organisation’s services.

Topic
Implementing gateways
Applicable to
all

History

Priority
should
Mar 2022
Gateways implement a demilitarised zone if external parties require access to an organisation’s services.
Miscellaneous changes were made to rationale and recommendations throughout the publication to clarify content without changing intent. This included a review from the Guidelines for System Hardening chapter through to the Guidelines for Data Transfers chapter.
2015
Agencies must use demilitarised zones to house services accessed externally and mediateinternal and external access to information held on agency networks.
2010
Agencies should use demilitarised zones to house systems accessed externally and mediate external accessto information held on internal systems.
2008
Agencies should use demilitarised zones to separate externally accessible systems, such as Web servers, from both uncontrolled public networks and internal networks.