We have users who should have different permissions. You could divide the users into different groups.
Administrators should be able to access everything.
A group may access certain servers.
Another group can only access certain ports of servers on all Site2Site VPN (AutoVPN).
The authorization for the ClientVPN takes place with RADIUS on the ActiveDirectory server https://documentation.meraki.com/MX/Client_VPN/Configuring_RADIUS_Authentication_with_Client_VPN. But according to the instructions I don't get any routing to a network from the client at all and I don't want to change any default route on the client. I can't set the routing to all known networks anywhere.
I try to use Windows 11.
Regards, Ronny