An Azure Firewall Policy is configured in a Virtual WAN secured hub.What is different about this deployment compared to a standard VNet hub deployment?