Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Professional Enterprise

Domain 5Objective 3

5.3 Describe REST API Security 350-401 Practice Questions (Page 8)

Part of the 5.0 Security domain, which accounts for 20% of the 350-401 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)

43questions here
9free pages
8concepts
20%of the exam

Questions 36–40

  1. 36application · medium

    A network engineer is configuring a REST API client to interact with a Cisco DNA Center controller. The client is receiving a certificate validation error. The engineer has verified that the controller's certificate is signed by a trusted internal CA. What is the most likely cause of the error?

    Select an answer first
  2. 37application · medium

    A REST API for network automation is being abused by a botnet that rotates IP addresses. The API uses per-IP rate limiting. The abuse continues. Which additional measure should be implemented?

    Select an answer first
  3. 38application · medium

    A network automation platform accepts user-supplied strings to filter device inventory via a REST API. The API backend constructs a database query from the input. A security review found that a user could inject SQL commands. Which mitigation should be implemented?

    Select an answer first
  4. 39application · medium

    A network engineer is configuring a REST API client to communicate with a Cisco device. The device supports HTTPS but the certificate is signed by an internal CA. The client script is failing because it does not trust the CA. What should the engineer do?

    Select an answer first
  5. 40application · medium

    A developer is writing a REST API endpoint that accepts a device hostname as a query parameter and uses it to build a CLI command that is executed on a network device. A security review flags that a malicious user could inject additional commands. Which mitigation should the developer implement?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-401” is a trademark of its owner, used for identification only.