When Does Cisco DNA Center Apply Device Configurations?
When does Cisco DNA Center make changes to a device?
Community Votes
82% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The question tests the distinction between passive inventory gathering and active configuration management, highlighting that DNA Center requires both site assignment and enabled device controllability to execute automated policy pushes.
This question identifies the precise trigger for configuration deployment in Cisco DNA Center. Community consensus confirms that changes are applied when a device is explicitly assigned to a site with device controllability enabled, rather than during initial discovery.
Candidates frequently choose Option C, incorrectly assuming that device discovery automatically triggers configuration changes. In reality, discovery only collects inventory and telemetry data; actual configuration modifications require explicit site assignment to apply baseline profiles and policies.
Community Discussion (9 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Core Concept: DNA Center Device Lifecycle
Cisco DNA Center (now Catalyst Center) operates on a site-based design model. When a network device is onboarded, the platform follows a strict sequence: discovery, inventory population, site assignment, and finally, configuration enforcement.Why Option B is Correct
Configuration changes are pushed to a device specifically when it is assigned to a site and device controllability is enabled. Site assignment links the device to a specific location profile, which dictates the baseline templates, access control policies, and QoS settings it should receive. Enabling device controllability grants DNA Center permission to actively send configuration commands via NETCONF/SSH/SNMP. As noted by candidates referencing official documentation, this combination automatically triggers a workflow that synchronizes the device state with the assigned site profile.Why Other Options Are Incorrect
- Option A is incorrect because adding credentials only establishes authentication and connectivity for management; it does not initiate any configuration workflows.
- Option C is a common trap. While discovery gathers device information and may perform minimal setup (like SNMP communities or PKI certificates), it does not apply full site-level policies. Without site assignment, DNA Center lacks the context to determine what configurations to push.
- Option D is incorrect because configuring a NETCONF port only defines the communication transport mechanism. It does not act as a trigger for configuration deployment.
Exam Context
Understanding this workflow is critical for the 350-401 exam, as it reflects real-world automation practices where intentional site grouping precedes policy enforcement to prevent misconfiguration across the network.Official Reference
- https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/network-automation-and-management/dna-center/2-2-2/user_guide/b_cisco_dna_center_ug_2_2_2/b_cisco_dna_center_ug_2_2_2_chapter_011.html
- https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/network-automation-and-management/dna-center/2-2-2/admin_guide/b_cisco_dna_center_admin_guide_2_2_2/b_cisco_dna_center_admin_guide_2_2_2_chapter_010.html#id_53799
Exam Strategy
Focus on memorizing the DNA Center device onboarding lifecycle: Discovery (Inventory) -> Site Assignment (Policy Context) -> Controllability Enabled (Config Push). Use this sequence to quickly eliminate distractors that suggest automatic changes during discovery or credential addition. Always look for the explicit trigger that links topology/site context with active management permissions.
Related Analysis
Practice All 350-401 Questions
Access 218 questions with complete answers and detailed explanations.
View Full 350-401 Practice Test →