Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Associate Automation (CCNA Automation)

Domain 2Objective 7

7. Utilize Common API Authentication Mechanisms: Basic, Custom Token, and API Keys 200-901 Practice Questions (Page 4)

Part of the 2.0 Understanding and Using APIs domain, which accounts for 20% of the 200-901 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)

36questions here
8free pages
4concepts
20%of the exam

Questions 16–20

  1. 16application · medium

    A network automation engineer is building a script that calls a vendor API. The vendor requires a custom token that expires every 30 minutes. The script currently obtains a token at the start of each run, but some runs take longer than 30 minutes and fail mid-run with 401 errors. What is the best way to handle token expiration in the script?

    Select an answer first
  2. 17expert · hard

    A network engineer is migrating a set of scripts from a legacy API that uses HTTP Basic Authentication to a new API that uses custom token authentication. The scripts are run by multiple users with different permissions. The engineer wants to minimize the changes to the scripts while ensuring that each user's permissions are respected. Which approach is the most appropriate?

    Select an answer first
  3. 18expert · hard

    A company is building a public API for partners. The API will be accessed by partner applications and by a web portal for human users. The security team requires that partner applications be identified by a unique key and that human users authenticate with a username and password. The API must support both types of clients. Which combination of authentication mechanisms should the API implement?

    Select an answer first
  4. 19application · medium

    A network engineer is writing a script to query a network device's REST API. The device only supports HTTP Basic authentication and the script will run on a shared jump host where other users can read files. The engineer must minimize the risk of credential exposure. Which approach should the engineer take?

    Select an answer first
  5. 20expert · hard

    A network team is designing an API gateway for internal tools. The gateway will proxy requests to backend services that use different authentication mechanisms. The team wants to centralize authentication so that clients only need to authenticate once to the gateway. Which authentication mechanism should the gateway use with clients to best support this design?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-901” is a trademark of its owner, used for identification only.