In addition, the CloudBlade will also need read/write access in Brownfield
scenarios to Virtual WAN and Virtual Hub resources to configure BGP peers
necessary for the exchange of routes with the Virtual Hub(s) to remote Virtual
Networks. The read/write access needs to be explicitly provided in the case
where the Virtual Networks or the Virtual WAN/Virtual Hub resources were created
with a different subscription and, therefore, associated credentials than what
is used by the CloudBlade. Refer to
Azure resource management and subscriptions
for more information.