Let me get this straight, you don't want communication with Radius to be via public IP correct? In this case, do you intend to close a VPN between a Meraki MX and AWS and communicate via VPN tunnel correct? If so, it is possible to do it that way.
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.
Please, if this post was useful, leave your kudos and mark it as solved.