Guidelines for Virtual WAN Connections to Azure vHub
Prerequisites
- 
                    An Azure subscription with VWAN and vHub must be configured. 
- 
                    Service VNet and spoke VNets must be set up in Azure. 
- 
                    Multicloud Defense gateway must be deployed in the service VNet. 
- 
                    Permissions must be available to create and manage virtual network connections and route tables in Azure. 
- 
                    Permissions must be available to enable and disable vHub connections. 
Limitations
- 
                    Multicloud Defense is not supported as an NVA within a vHub. 
- 
                    Classless Inter Domain Routing (CIDR) selection is only available during the edit phase, not during VNet creation. 
- 
                    Route propagation is dependent on the configuration of the egress or ingress gateway.