Description |
This article addresses an issue where administrators with a Custom Admin profile configured with 'System:Read' permissions are unable to create a new address object from the firewall policy using the GUI. |
Scope |
FortiGate v7.4.4, v7.4.5, v7.4.6, v7.4.7. |
Solution |
Administrators with a Custom Admin profile set to System: Read permissions or System: Custom with at least one sysgrp-permission set to 'read' cannot create a new address object from the firewall policy because the '+' sign is missing under Source and Destination fields in the GUI.
Missing '+' sign for the Source and Destination fields.
Workaround: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.