Could we not do it as just SSO/SAML for the auth of the user and then manage the permissions within meraki portal like normal admin. Cisco Umbrella is like this. When you do SSO at the portal login you select SSO and it redirects your to auth to your org and then once approved lets you in and then all the rest of the permissions are handled within the app itself.
... View more