COSINE-ORION-MIB :: csOrionIKECryptoMapFlag

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCOSINE-ORION-MIBcsOrionIKECryptoMapFlag

csOrionIKECryptoMapFlag

Module: COSINE-ORION-MIB

OID (symbolic): COSINE-ORION-MIB::csOrionIKECryptoMapFlag

OID (numeric): 1.3.6.1.4.1.3085.3.1.6.5.4.1.3

Node type: OBJECT-TYPE

Type: Unsigned32

Access: read-create

Description: Each bit within this object enables a specific feature
within the Crypto Map.  Below is a list of the features
and their corresponding bits identifiers.

        feature                 bit
------------------------------------------------------
        pfs                   0
        pfs-identify          1
        sa-per-net            5 -- note, sa-per-host & sa-per-net 
        sa-per-host           6 -- are mutually exclusive
        sa-per-protocol       7
        sa-per-port           8
        main-mode            10 -- main-mode and aggressive-mode
        aggressive-mode      11 -- are mutually exclusive
        copy-df              21
        dont-verify-padding  22
        always-plain         29
        passby               30
        deny                 31

end of description.
NOTE: default value varies depending on csOrionIKECryptoMapType.
      'isakmp'       - default is 1056 (0x420  main-mode and sa-per-net)
          'isakmpDialup' - default is 1088 (0x440  main-mode and sa-per-host).

What is csOrionIKECryptoMapFlag?

This Unsigned32 is a bitmask where its description lists specific bit positions (e.g. bit 0 = pfs, bit 5 = sa-per-net, bit 10 = main-mode, bit 11 = aggressive-mode, bit 21 = copy-df) each toggling one IKE crypto-map behavior. An admin sets or clears individual bits to enable features like aggressive mode negotiation or per-net SA granularity without needing a separate MIB object for every option. For example, an admin needing faster IKE negotiation through a NAT device might set bit 11 (aggressive-mode) in this flag while leaving bit 10 (main-mode) clear.

OID Breakdown

Upper-level ancestors (9 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.3085csRootCOSINE-GLOBAL-REG
1.3.6.1.4.1.3085.3csProductCOSINE-GLOBAL-REG
1.3.6.1.4.1.3085.3.1csOrionMIBCOSINE-GLOBAL-REG
Numeric OIDNameModule
1.3.6.1.4.1.3085.3.1.6csOrionServiceInfoCOSINE-ORION-MIB
1.3.6.1.4.1.3085.3.1.6.5csOrionEncryptInfoCOSINE-ORION-MIB
1.3.6.1.4.1.3085.3.1.6.5.4csOrionIKECryptoMapTableCOSINE-ORION-MIB
1.3.6.1.4.1.3085.3.1.6.5.4.1csOrionIKECryptoMapEntryCOSINE-ORION-MIB
1.3.6.1.4.1.3085.3.1.6.5.4.1.3csOrionIKECryptoMapFlagCOSINE-ORION-MIB