Description
As a user, I would like to detect nodes built using AMIs that are past their deprecation time,
So that I can uncordon / drain such nodes OR don't allow the creation of such nodes at all.
Potential Solution
include AMI information (id, name, location, type, architecture, public, platform details, owner, creation time, deprecated time, state) in the instances struct
write a Kyverno policy to audit for nodes built using AMIs past their deprecation time
Description As a user, I would like to detect nodes built using AMIs that are past their deprecation time, So that I can uncordon / drain such nodes OR don't allow the creation of such nodes at all.
Potential Solution
Additional Information Sample AMI info: