
CiscoCertified Network Associate Automation (CCNA Automation)
Domain 2Objective 7
7. Utilize Common API Authentication Mechanisms: Basic, Custom Token, and API Keys 200-901 Practice Questions (Page 1)
Part of the 2.0 Understanding and Using APIs domain, which accounts for 20% of the 200-901 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
4concepts
20%of the exam
Questions 1–5
- 1
A developer is writing a script to interact with a REST API that uses custom token authentication. The token endpoint requires the client to send a client ID and client secret in the request body. The developer wants to keep the client secret secure. What is the best practice for handling the client secret?
Select an answer first - 2
In a custom token authentication scheme, how does a client typically obtain a token?
Select an answer first - 3
A developer is integrating a third-party SaaS API that issues a custom token after a one-time login with a client ID and client secret. The API documentation states that the token expires after 30 minutes. The developer's application runs a batch job every hour. What is the most appropriate way to handle authentication for each batch run?
Select an answer first - 4
A network team is building an automation platform that will be used by both internal engineers and external partners. Internal engineers use Active Directory credentials and need to be able to log in to a web portal. External partners' applications need to access the API without user interaction. The security team requires that internal credentials are never sent to the API and that partner access can be revoked per partner. Which authentication strategy should the team implement?
Select an answer first - 5
A network operations team wants to allow a third-party monitoring tool to read interface statistics from their Cisco Meraki dashboard API. The tool only needs read-only access and will be used by a small, trusted group. Which authentication mechanism is the most appropriate choice?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-901” is a trademark of its owner, used for identification only.