All technological notes.
Network Firewall
3 to Layer 7 protectionFeature
Network Firewall uses the AWS Gateway Load Balancer(not 3rd-party app, but aws manage it)AWS Firewall Manager to apply to many VPCsAny direction, you can inspect
Direct Connect & Site-to-Site VPN
Network Access Control Lists (NACLs)security groupsWAF (protect against malicious HTTP requests)Shield & AWS Shield Advanced(DDoS)Firewall Manager (to manage them across accounts)Network Firewall(VPC level)Supports 1000s of rules
*.mycorp.com or third-party software repoGateway Load Balancer, but all managed by AWSS3, CloudWatch Logs, Kinesis Data Firehose