I understand the best practices part of this, I have already tried granted the adminSDholder permissions. This still failed to resolve my issue. I have had a call open with MS Support services for over a week now, as they still do not know how to get this working correctly. It is very, very much of a problem on this end. I have even gone so far as to delete the elevated permissions as a test on one of the mailboxes. This still failed to allow the user to send emails from their Blackberry. So now I have to figure out the command syntax to remove the sendas permissions from the adminSDholder permissions....
The only way I see for this to work, is to remove your mailbox from your primary account. Then instead of creating a new mail account on the secondary account, rejoin the old primary mailbox to the secondary mailbox. The problem with the KB workaround is this...if I create a standard user account lets call it bbjdoe and my account with admin rights is called jdoe. The KB article is not clear exactly what I am supposed to do with bbjdoe, so I assume I am to replace the jdoe account on the Blackberry server with bbjdoe. So now my Blackberry device can send email messages, but now I no longer can receive email messages that are going to my jdoe account, because AD wants a unique email address for each account...you can't have jdoe@domain.com in two locations. So I set up forwarding from the jdoe account to the bbjdoe account, still however all email messages being replied from the Blackberry account with show up as bbjdoe@domain.com. Am I wrong here? Help me understand this please. I have already spent many of hours on this and have put critical projects behind schedule because of this change in behavior.