Hi Guys,
 
Need your recommendation for following scenario that we are deploying for the customer.
 
Meraki MX 250 integrated with Cisco Umbrella  with HA + client vpn Cisco Anyconnect authenticated(SAML) through Entra ID(Azure).
Customer is asking if we can restrict access to certain users (contractors) through a policy on Meraki or Umbrella .
 
I havent found any documentation for this type of scenario, although i know we can do this via Grp policy on MX and RADIUS authentication.
 
Any suggestions would be highly appreciated.