That's better than we have.
I'm working on implementing some more policies, but the problem is I'm always focused on fixing problems with our crumbling openstack cluster. We're moving to a new datacenter and ditching the old hardware. At that point, I'm going to rebuild it properly. The previous guy didn't really know what he was doing, so the infrastructure needs constant feeding.
I'm thinking about doing a series of blog posts on this as I rebuild. Or maybe on the test environment. Not sure yet.