Actually, I have seen this issue with both Exchange Server 2010 and trying to mailbox enable a user account and in Lync Server 2010 and trying to enable a user for Lync. In both cases, the error says you don’t have the proper access rights. It really isn’t so much an issue about your account having the proper rights to enable the Lync user, it is more about the object that you are trying to enable being a member of an Active Directory protected group.
It really is a simple fix:
- Open up Active Directory Users and Computers and select the user account.
- Select the Security tab
- Click advanced
- Select “Include inheritable permissions from this object’s parent”
- Click Apply
It should work now.