Australian Information Security Manual
Guidelines for networking

Australian Information Security Manual ISM-1782: Protective DNS for malicious domains

A protective DNS service is used to block access to known malicious domain names.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 5 controls across 4 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

CIS Controls v8 · 2 controls

  • CIS-4.9 Configure Trusted DNS Servers on Enterprise Assets
  • CIS-9.2 Use DNS Filtering Services

ISO 27002:2022 · 1 control

  • 8.21 Security of network services
  • NIST-CSF-DE.AE-07 Cyber threat intelligence and other contextual information are integrated into the analysis
  • 0108 0108 Protective DNS or equivalent blocks known malicious endpoints

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Guidelines for networking

Query this from an agent

The graph holds this control, the 5 it maps to, and the evidence behind each claim, over MCP and REST.