DevNet Associate (DEVASC) v1.0Infrastructure and AutomationMedium
A network engineer is using a custom Python script to automate the configuration of Cisco IOS XE devices. The script needs to send configuration changes to the device, but also needs the ability to validate these changes against the device's configuration rules before they are applied. Which NETCONF operation, specifically when used with the ':validate' capability, allows the engineer to check the syntax and semantics of configuration data without committing it?
- A<copy-config>
- B<commit>
- C<edit-config>
- D<validate>
Show answer & explanationAnswer & explanation
Correct answer: D. <validate>
The NETCONF <validate> operation, available when the ':validate' capability is advertised by the device, allows a client to check the syntax and semantics of configuration data (typically in the candidate datastore) without actually applying or committing those changes to the running configuration.
Why the other options are wrong
- A. <copy-config> copies configurations between datastores, not for validation.
- B. <commit> applies changes, it does not validate without applying.
- C. <edit-config> modifies a configuration datastore, it doesn't primarily validate.
NETCONF <validate> operation
A NETCONF operation that checks the syntax and semantics of configuration data in a specified datastore (e.g., candidate) against device rules without applying the changes.
- Requires the ':validate' capability to be advertised by the device.
- Used to preemptively identify configuration errors.
- Does not modify the device's running configuration.
Memory trick: Think of drafting an email and spell-checking it before hitting send.