We have two AWS tags we can utilize for AWS instances.
PAM will not import intances with tag of "xsuiteignore"
on AWS side, add tag on the instance
Key = XsuiteIgnore
You can use AWS tag "XsuiteGroups" with PAM device group on value to make it easier for you to create policies for the devices you may specifically use.
on PAM side
Device group -> AWS in "group type" and enter group name to create AWS device group
on AWS side
Add tag -> Xsuitegroups in key and AWS device group in value