🔥 3-day streak
Cisco CCNP Automation AUTOCOR (350-901)115 / 136
Question 115 of 136

A Python service authenticates to a Cisco IOS-XE device controller using OAuth2 and receives a short-lived bearer token. During a security review, a colleague notices the token is written to a file named token.cache in the working directory so it can be reused across script runs, and the file has world-readable permissions. The service runs continuously as a long-lived daemon. Which change best aligns with secure coding practices for authentication and secret management while preserving functionality?

Reviewed for accuracy · Report an issueNext question