Technical Tip: Unable to create address object in firewall policy via GUI with custom sysgrp-permission
Description | This article describes the issue where the user is unable to create an address object in the firewall policy on FortiGate GUI if sysgrp-permission admin is set to 'read' privilege. |
Scope | FortiGate. |
Solution | In FortiOS v7.4.4 and above, a user account with custom sysgrp-permission is not able to create an address object directly in a firewall policy via the GUI due to the missing '+' sign. For example: ![]()
![]() |


