We’ve just enrolled to the “object and property security policies” feature and we started setting it up. But some of our engineers need the permission to create new policies.
Does anybody know where can we give that permission, as an Ontology Administrator?
Bellow is an screenshot of the error.
Looks like the error is an Ontology-level permission check, not object-type-level. You’ll need Editor on the Ontology resource itself.
To grant access:
Open Ontology Manager
Go to top-level Ontology settings (gear icon — not a specific object type)
In Permissions, grant your engineers Editor on the Ontology resource
This unlocks ontology:create-property-security-group (and also covers creating/editing object types, link types, etc. — there’s no narrower “security policies only” permission today). If that’s too broad for your governance, a common pattern is to have a small editor group create policies, then delegate per-policy configuration at the object type level.