Technical Tip: Unable to create a new address object in Firewall Policy by the admin with Custom Admin Profile
| Description | This article addresses an issue where administrators with a Custom Admin profile configured with 'System:Read' permissions are unable to create a new address object from the firewall policy using the GUI. |
| Scope | FortiGate v7.4.4 to v7.4.9. |
| Solution | Administrators with a Custom Admin profile set to System: Read permissions or System: Custom with at least one sysgrp-permission set to 'read' cannot create a new address object from the firewall policy because the '+' sign is missing under the Source and Destination fields in the GUI.
Missing '+' sign for the Source and Destination fields.
Workaround: |



