You upgraded or newly installed Symantec Endpoint Protection Manager (SEPM) 14.3 RU1 or later that used embedded MSSQL Express database.
However, Endpoint Detection and Response (EDR) 4.3 shows "SEPM database error" in [Settings] - [Synapse] - [Enable Symantec Endpoint Protection Correlation] even if you configure Synapse configuration properly.
OS application log of SEPM server shows following error:
Source: MSSQL$SQLEXPRESSSYMC
Event ID: 17835
Description: Encryption is required to connect to this server but the client library does not support encryption; the connection has been closed. Please upgrade your client library. [CLIENT: <EDR IP address>].
Upgrade EDR to version 4.5 or later.
The same error is seen on newer version of EDR if ForceEncryption is enabled for SQL Server Express instance on SEPM server. It can be disabled as follows:
- Open SQL Server Configuration Manager, expand SQL Server Network Configuration, right-click Protocols for <server instance>, and then select Properties.
- On the Flags tab, in the ForceEncryption box, select No, and then select OK to close the dialog box.
- Restart the SQL Server service.
For encrypted connection requirement, refer to Unencrypted connection to Endpoint Protection Manager database on console