Symptom
403 error when accessing Policies -> Access Control -> Access Control after exporting User Role from FMC (4600) to FMCv.
User Role (RoleName.sfo):
+ Policy - Error 403: Forbidden
+ Objects - Error 403: Forbidden
+ TID - Error 403: Forbidden
+ Device - Allowed
Conditions
FMC was 6.4.0.9 on both devices at the time we exported from a physical FMC (4600) to a FMCv.
Other versions may apply.
Workaround
1) Click edit(pencil icon) on the user role "UserRoleName" and then click save.
2) Once the above is done, login as the "user" that has been assigned with the User Role, and check if ACP is accessible.
* The above steps are going to set the proper permissions.
Further Problem Description
We can provide the WA in case you run into the same issue as it was tested in the lab and worked just fine.