Watch this video on YouTube
You need to enforce subnet-level traffic isolation by directing all traffic from instance-A , located in one subnet, to pass through a security appliance ( instance-B ) that resides in a different subnet. How can you configure this routing behavior?