I try to granting rights at the attribute level allow a delegated admin group to view a specific attribute (domain) on a target.
Here are the steps what i did:
1. Create Admin group (Click New - Select Administrator - Select Admin Group.., and then following the default settings).
2. Highlight the zadmin group under Distribution Lists - Click Configure Grants - Click Add (ACE window popup).
Grantee Name: firstname.lastname@example.org
Target Type: domain
Target Name: example.com
Right Type: Attribute Right
Attribute Right Verb: Read
Attribute Right Target Type: domain
Attribute Name: adminConsoleDomainRights
Right Name: get.domain.adminConsoleDomainRights
Click Add and Finish button
Somehow, it keeps popping up a window with the following messages
"Failed to grant the ACL: system failure: attribute adminConsoleDomainRights is not on domain.