There's no way to configure it without an expiration date, it's a maximum of 90 days as you saw. And yes, after the client connects to the SSID and authenticates a counter starts, and only when the counter resets will it be asked to authenticate again.
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.
Please, if this post was useful, leave your kudos and mark it as solved.