Answer (Choose 1 answer)
Which statement describes the policy-based intrusion detection approach?
A. It compares the operations of a host against well-defined security rules.
B. It compares the antimalware definitions to a central repository for the latest updates.
C. It compares the behaviors of a host to an established baseline to identify potential intrusion.
D. It compares the signatures of incoming traffic to a known intrusion database.