Cisco
300-535 · Question #131
A network engineer is implementing a new network using NETCONF. The goal is to automate but also harden the device configuration. Which NETCONF action must be used to accomplish this goal?
The correct answer is C. Limit access to port 830, well-known clients, and SSH VTY. To securely automate device configuration with NETCONF, limit access to port 830, restrict connections to well-known clients, and use only SSH VTY for NETCONF sessions.
Automation APIs and Protocols
Question
A network engineer is implementing a new network using NETCONF. The goal is to automate but also harden the device configuration. Which NETCONF action must be used to accomplish this goal?
Options
- ASpecify the source interface for SSH.
- BConfigure by using the ip http secure-server command.
- CLimit access to port 830, well-known clients, and SSH VTY.
- DEnable CoPP.
How the community answered
(35 responses)- A9% (3)
- B3% (1)
- C86% (30)
- D3% (1)
Explanation
To securely automate device configuration with NETCONF, limit access to port 830, restrict connections to well-known clients, and use only SSH VTY for NETCONF sessions.
Topics
#NETCONF#security hardening#SSH VTY#port 830
Community Discussion
No community discussion yet for this question.