Ultimate access to all questions.
How should a network engineer configure an AWS Network Firewall to ensure complete metadata logging (including source/destination IP addresses and protocol type), capture all network traffic flows, and record DROP or ALERT actions for processed traffic, while ensuring the firewall endpoints are correctly placed in subnets and VPC route tables direct traffic through the firewall for internet-bound and inbound traffic?