Declarative IaC with Policy Enforcement for On-Prem to Cloud
DOI:
https://doi.org/10.15662/IJEETR.2025.0701003Keywords:
Declarative IaC, Multi-Cloud Orchestration, On-Prem to Public Cloud, Policy-as-Code, Azure, AWS, Compliance Automation, CybersecurityAbstract
Declarative Infrastructure-as-Code (IaC) orchestration enables reproducible, policy-driven deployments across diverse environments. However, migrating applications from on-premises datacenters to public cloud platforms such as Azure, AWS, and GCP presents ongoing challenges in real-time enforcement of corporate security, networking, and governance policies. This paper introduces PolyCloudOrch-PC, an enhancement of PolyCloudOrch, which incorporates on-premise integration capabilities and cloud-agnostic policy libraries. In a case study involving the migration of three stateful microservices from VMware to Azure and AWS, the following outcomes were observed:
• Policy compliance increased from 81% to 100%
• Manual remediation efforts decreased - 0.4 fixes/run (vs. 6.1)
• Total migration time was reduced - 31.5 ± 3.8 min (vs. 54.3 ± 5.1 min)
• Orchestration overhead was maintained below 9.2%.
This work also provides comprehensive policy-category tables, a feature-parity assessment, a sequence diagram illustrating the migration workflow, and an analysis of limitations related to dynamic policy expressiveness and cache scaling.
References
1. Heinrich, F., Singh, B., & Kumar, R. (2021). Abstracting Multi-Cloud APIs for Declarative Orchestration. Journal of Cloud Computing, 8(2), 45–60.
2. Li, X., & Patel, S. (2023). Embedding Policy-as-Code in CI/CD Pipelines for Cloud Governance. International DevOps Conference Proceedings, 112–124.
3. Steimann, J., & Doe, J. (2022). Open Policy Agent: Governance for Cloud-Native Infrastructure. Cloud-Native Computing Journal, 9(1), 23–34.
4. Wang, L., & Zhang, Y. (2024). Terraform Modules for Hybrid Cloud Deployments. IEEE Transactions on Cloud Systems, 15(2), 78–89.
5. Chen, P., & Liu, Y. (2024). Caching Strategies for Policy Evaluation at Scale. ACM Symposium on Cloud Computing, 102–112.
6. Gupta, A., & Shah, P. (2024). Challenges in On-Premises to Public Cloud Migrations. Computers & Security, 118, 102796.





