I don't think it's D, pretty sure B and C are right for IoT Security. URL Filtering is a common distractor here but not actually required for device baselining. Similar question came up in another set, same answer there. Agree?
I don’t think it’s D here. Enhanced application logs (B) and Threat logs (C) are what IoT Security uses for device discovery and behavior analysis, not URL Filtering. WildFire (A) is another trap since it’s more for malware sandboxing, not core IoT profiling. Pretty sure B and C are what the official docs mention, but chime in if you’ve seen otherwise!
B and C get forwarded for IoT Security since you need device behavior (enhanced app logs) and threat detection. WildFire and URL Filtering aren't strictly needed here. Think that's right but open if anyone knows otherwise.