I don’t know if this will help, but the vMX now has a limited NAT mode which essentially NATs all the IP addresses from the branch sites to the vMX IP address. I haven’t used it, and don’t know if this will provide you with the NAT you need, or if it will work for your design (it all depends what else you are doing in AWS). The detail about it is here, https://documentation.meraki.com/MX/MX_Installation_Guides/vMX_Setup_Guide_for_Amazon_Web_Services_(AWS).
... View more