I am in the middle of creating a multi-server farm in a very restrictive security environment. All servers are Windows 2008 R2 Enterprise.
I was following one of the security guides which involved removing permissions to the AD schema via the schema management tool. Either due to errors in the guide and/or errors by me I can no longer connect to AD via any of the normal tools (Active Directory Sites and Services, Users and Computers, etc). Attempting to connect via ADSI edit causes mmc to crash unless I specify "Schema" as the well-known naming context.
I have tried using both my enterprise admin and domain admin account.
Recreating the domain is far from ideal because I've already installed SQL and SharePoint. Thankfully this system is not in production.
Is it possible to somehow add my rights back?
EDIT: I do not have a backup of AD. I should note I am primarily a developer and not necessarily competent at network or AD administration.
The easiest way would be to restore AD. To you have a backup of AD from before the problem started?
No its not possible to add your rights back as I suspect you didn't remove your rights at all but likely removed the ability of AD to actually utilize those rights. As a best practice there are no known circumstances that would "enhance" security by playing with the permissions in the schema. Generally speaking, any changes you make in that regard will likely have the effect of forcing you to decrease the security on existing groups in order to maintain functionality.