350-401 Automation Practice Question
Which THREE attributes are typically included in a YANG module for interface configuration? (Choose three.)
⚠ Common exam trap
Cisco often tests the distinction between configurable YANG leaves (like 'description', 'mtu', 'ip address') and operational state leaves (like 'mac address') or platform-specific extensions (like 'switchport mode') to see if candidates understand the standard IETF interface model versus proprietary additions.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
description
In a YANG module for interface configuration, the 'description' leaf (option B) is a standard attribute used to set a human-readable interface description via the CLI equivalent 'description <text>'. The 'mtu' leaf (option C) is also standard, representing the interface Maximum Transmission Unit, commonly configured with 'mtu <value>' and modeled in YANG as an unsigned integer. The 'ip address' node (option D) is included to assign an IPv4 address and subnet mask to an interface, typically modeled as a container or list with 'address' and 'prefix-length' leaves. Option A, 'switchport mode', is a Layer 2 switching attribute found in vendor-specific or Cisco YANG models (e.g., Cisco IOS XE native model) but is not a generic interface configuration attribute in standard IETF YANG models like ietf-interfaces. Option E, 'mac address', is usually a read-only operational state or a hardware-assigned value, not a typical configurable attribute in a YANG interface configuration module.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
switchport mode
Why it's wrong here
Switchport mode is a Layer 2 switching attribute configured under a VLAN or switchport model, not part of a generic interface YANG module covering addressing, state and MTU. It would be correct in a vendor-specific switching YANG model for configuring access or trunk ports on a campus switch.
- ✓
description
Why this is correct
A YANG interface module carries a description leaf holding free-text administrative annotation for the interface. It is a standard configurable attribute alongside administrative state and addressing, making it one of the three expected interface attributes.
- ✓
mtu
Why this is correct
The mtu leaf sets the maximum transmission unit for the interface, a standard configurable parameter in YANG interface models. It directly governs frame size on that port, qualifying as one of the three typical interface configuration attributes.
- ✓
ip address
Why this is correct
An interface's IP address is configured through YANG leaf nodes within the module's data tree, satisfying the requirement for configurable interface attributes. YANG models layer 3 parameters such as IPv4 and IPv6 addressing, enabling NETCONF or RESTCONF to programmatically set them, which is essential for automated interface provisioning.
- ✗
mac address
Why it's wrong here
A MAC address is assigned by hardware and read as operational state, not configured as an interface attribute in a YANG module. Interface modules carry configurable items such as IP address, MTU and enabled state. MAC addresses appear in forwarding or ARP tables, which are monitoring concerns rather than interface configuration.
Visual reference
Quick reference
Access Control Model Comparison
| Model | Acronym | Who Controls Access? | Best For |
|---|---|---|---|
| Discretionary Access Control | DAC | Resource owner | Small teams, file shares |
| Mandatory Access Control | MAC | System / security labels | Classified govt / military |
| Role-Based Access Control | RBAC | Administrator (via roles) | Enterprise environments |
| Attribute-Based Access Control | ABAC | Policy engine (user + resource attributes) | Fine-grained, dynamic policies |
| Rule-Based Access Control | RuBAC | System rules / ACLs | Firewall rules, network ACLs |
Go deeper
Related to this question
About these practice questions
Courseiva writes every 350-401 question from scratch — 1,923 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 350-401 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-401 exam.