easyMultiple Choice
200-901 Practice Question: Refer to the exhibit
Exhibit
ip http server ip http secure-server ip http authentication local
Refer to the exhibit. A developer is trying to access the REST API on a Cisco IOS XE device but receives a 401 Unauthorized error. What is the most likely cause?
⚠ Common exam trap
Cisco often tests the distinction between a 401 Unauthorized error (authentication failure) and a 403 Forbidden error (authorization failure), or between connectivity issues (e.g., HTTP server not enabled) and authentication issues, leading candidates to confuse missing credentials with missing server configuration.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Authentication requires local credentials, but none were provided
A 401 Unauthorized error specifically indicates that authentication is required but was either missing or invalid. For Cisco IOS XE REST API access, the device requires local credentials (username and password) to be provided in the request, typically via HTTP Basic Authentication. Without these credentials, the server rejects the request with a 401 status.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The device does not support REST API
Why it's wrong here
A 401 means the request reached the API but authentication failed, so the device clearly supports REST API. It tempts because unsupported APIs often fail, but that typically yields 404 or connection refusal; 401 points to missing or invalid credentials instead.
- ✓
Authentication requires local credentials, but none were provided
Why this is correct
A 401 response indicates the request reached the API but lacked valid authentication credentials. RESTCONF on IOS XE requires HTTP basic authentication with local user credentials, so omitting the Authorization header or supplying none produces exactly this rejection.
- ✗
HTTPS is not configured
Why it's wrong here
Missing HTTPS configuration would prevent the TLS connection entirely, producing a connection error rather than an HTTP 401 response. It tempts because IOS XE REST API requires HTTPS, but a 401 proves the request arrived and was rejected at authentication, not transport.
- ✗
HTTP server is not enabled
Why it's wrong here
A disabled HTTP server would refuse the connection outright, so no HTTP status code would return. It tempts because the REST API needs the server enabled, yet receiving 401 confirms the server responded and only the credentials were rejected.
Go deeper
Related to this question
About these practice questions
Courseiva writes every 200-901 question from scratch — 975 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 200-901 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 200-901 exam.