This document talks about the network architecture and issues that come up when trying to connect their branch offices to third-party/cloud data centers, while leveraging their investment in conventional VPN services. It describes some problems and proposes some mitigations to them. I reviewed this document from the ART perspective and have little to say. I would expect RTG and SEC to have much more to say. In Section 2, "commonly used terms" was a little surprising, as I wouldn't think those needed definition. Maybe find other words to introduce the list of terms? The document does not have any of the issues in the "common ART issues" list (https://wiki.ietf.org/group/art/TypicalARTAreaIssues), because it is at a higher level then bits and bytes in data or on the wire.