350-401 Automation Practice Question
A network engineer is designing an automation solution that uses Python with the ncclient library to manage Cisco IOS XE devices via NETCONF. The engineer needs to ensure that the solution can retrieve interface configurations, modify them, and verify the changes. Which two NETCONF operations should the engineer use to accomplish these tasks? (Choose two.)
⚠ Common exam trap
Test-takers frequently confuse <get> with <get-config>; <get> retrieves both state and config, while <get-config> is specifically for configuration data, which is what the engineer needs for precise editing.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
<edit-config>
To retrieve interface configurations, the engineer should use <get-config>, which fetches configuration data from a datastore. To modify those configurations, <edit-config> is the correct operation, allowing targeted changes. Together, these operations enable reading the current state, applying changes, and then verifying by re-reading the configuration.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
<delete-config>
Why it's wrong here
The <delete-config> operation deletes an entire configuration datastore, such as the startup configuration. It is not used for modifying interface configurations; it is a destructive operation for wiping a datastore. Using it would be inappropriate for the engineer's goal of retrieving and modifying interface settings. It does not support granular changes.
- ✗
<get>
Why it's wrong here
The <get> operation retrieves both configuration and state data from the running datastore. While it can be used to read interface information, it is not specifically for configuration retrieval and modification. It is broader and less precise than <get-config> for configuration tasks. The engineer needs to modify configurations, which <get> cannot do.
- ✓
<edit-config>
Why this is correct
The <edit-config> operation is used to modify the configuration in a target datastore. It supports operations like merge, replace, create, and delete. The engineer would use this to apply changes to interface configurations. It is the core operation for making configuration changes via NETCONF and is required to fulfill the modification requirement.
- ✗
<copy-config>
Why it's wrong here
The <copy-config> operation copies an entire configuration from one datastore to another, such as from candidate to running. It is not used for granular interface modifications. While it can be part of a workflow, it is not the primary operation for editing specific interface parameters. The engineer needs to modify individual settings, so <edit-config> is more appropriate.
- ✓
<get-config>
Why this is correct
The <get-config> operation retrieves configuration data from a specified datastore, such as running or candidate. It is used to obtain the current interface configuration before making changes. This allows the engineer to understand the existing state and construct accurate edits. It is essential for verification and for building the desired configuration delta.
Go deeper
Related to this question
About these practice questions
Courseiva writes every 350-401 question from scratch — 1,923 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Cisco exam blueprint
This 350-401 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-401 exam.