This flag only works on attributes which use a DN syntax and contain a list of entries, such as groupMembership.
When set, requires users to have supervisor rights to the entry before they can add or delete the entry as a value for this attribute.
When not set, requires the user to have read rights to read the values and write rights to modify the values.