
CiscoCertified Network Professional Cybersecurity (CBRCOR)
Domain 4Objective 9
4.9 Interpret API Authentication Mechanisms: Basic, Custom Token, and API Keys 350-201 Practice Questions (Page 3)
Part of the Automation domain, which accounts for 20% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 22 practice questions to prepare you well beyond it. (estimate)
22questions here
5free pages
4concepts
20%of the exam
Questions 11–15
- 11
A network administrator is configuring a monitoring tool to authenticate to a network device's REST API. The device only supports HTTP Basic authentication. The administrator is concerned about credential exposure on the network. What is the most important control to implement?
Select an answer first - 12
A security team is reviewing the use of API keys in their environment. They find that several applications share the same API key. What is the primary security risk of this practice?
Select an answer first - 13
A network team is building an automation script that queries a firewall API to retrieve configuration backups. The API uses API key authentication. The team wants to ensure that if the script is compromised, the impact is limited and the key can be rotated without affecting other services. What should the team do?
Select an answer first - 14
In a custom token authentication flow, what typically happens after a client successfully authenticates with credentials?
Select an answer first - 15
A network engineer is testing an API with curl. The API uses HTTP Basic authentication. The engineer wants to verify that the credentials are being sent correctly. Which curl command correctly includes the credentials?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.