Terraform ACI Provider Authentication and APIC DOS Threshold Counting
An engineer must automate the provisioning of Cisco ACI objects using the Terraform tool. The engineer must ensure that APIC counts the authentication login requests against the threshold to avoid a DOS attack. Which configuration must be used in Terraform to accomplish these goals?
Community Votes
54% of anonymous learners picked answer C. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
User ID/password authentication obtains a token per session and APIC counts those login requests; signature-based auth is designed to avoid the DOS-prevention threshold. Auth is a provider-level setting.
For ACI Terraform automation where APIC must count auth requests against the DOS threshold, configure the provider with user ID and password rather than signature-based auth.
Placing credentials under a resource instead of the provider, or picking signature-based auth because it sounds more secure while the question explicitly wants request counting.
Community Discussion (6 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
The requirement is that APIC must count the authentication login requests against the threshold so the DOS-prevention mechanism engages. The Cisco ACI Terraform provider supports user ID/password and signature-based auth. With user ID/password, the provider obtains a token per session and APIC counts those login requests, which is the behavior the question asks for. The configuration belongs under theprovider block, not a resource block, because authentication is provider-level.Why the Other Options Are Wrong
D. Signature-based authentication is designed to avoid hitting the DOS-prevention threshold, so it does not satisfy "APIC counts the request." A and B place the credential under aresource, but authentication is configured at the provider level, not per resource.