I debugged a replication issue today. It would have helped immensely, if I would see which users meshStack tries to assign to which groups on the tenant detail screen.
Similarly to tags, there are two aspects that are relevant:
  1. The desired state (project bindings for users and group)
  2. The replicated state (e.g. which groups were created in AWS SSO and which permission sets in AWS were assigned)