🔥 3-day streak
Cisco CCNP Automation AUTOCOR (350-901)19 / 136
Question 19 of 136

Your team commits an Ansible project to a shared Git repository to automate OSPF and interface configuration across IOS-XE devices. A security audit flags that plaintext device passwords appear in the group_vars/all.yml file. You must keep the credentials in version control but ensure they are not readable in plaintext, while still allowing playbooks to run unattended in a CI/CD pipeline. Which approach best satisfies these requirements?

Reviewed for accuracy · Report an issueNext question