2026-10-05

Encrypted Connection (TLS)

  • The communication between the SQL Server instance and the client application is encrypted while data travels across the network.​
  • The traffic is encrypted using TLS (Transport Layer Security) before it leaves the client and decrypted only by SQL Server.
  • The encrypted tunnel protects:​
    • Login credentials
    • SQL statements and Stored Procedure calls​
    • Query results

Create a Self-Signed Certificate in the SQL Server​​ 

Locate the Certificate​

Grant SQL Server Access to Certificate’s Private Key​

Export Certificate for Clients​

Configure SQL Server to Use the Certificate​

Import the exported certificate​ into the client application server​

Verification

An expired TLS cert can cause client connections to fail.​
For replacing the TLS certificate, you can execute the same PowerShell command to create a new certificate and then configure the SQL Server to apply the new certificate, as shown in the steps above.​

​

​

​