Apply an MS SQL key to the ExtraHop system
The following procedures explain how to apply an MS SQL key to the ExtraHop system. After completing this procedure, you will be able to view all users associated with your databases and monitor their activity.
To complete this procedure, Windows Server 2008 R2 or later and Microsoft SQL Server 2008 R2 or later are required.
You should have experience administering the Internet Information Services (IIS) Manager and MS SQL server to complete these procedures.
Export the certificate to PFX format
Before you begin
To complete the procedures in the following sections, you must first generate a server certificate. For more information, see Configuring Server Certificates in IIS 7 on the Microsoft website.Load the PFX file to the SQL server
- Open the SQL Server Configuration Manager.
- From the left panel, expand SQL Server Network Configuration.
- Click Protocols for MSSQLSERVER.
- Click the Certificate tab.
- From the Certificate drop-down list, select the server certificate.
- Click OK.
- Restart the MSSQLSERVER service.
(Optional) Configure a non-standard TCP port
Complete the steps in this procedure if you modified the default TCP port in the previous procedure.
- Log in to the Administration settings on the ExtraHop system through https://<extrahop-hostname-or-IP-address>/admin.
- In the System Configuration section, click Capture.
- Click Protocol Classification.
- Click Add Protocol.
- From the Name drop-down list, select MS SQL Server (tds).
- From the Protocol drop-down list, select TCP.
- In the Destination field, type the port number you configured earlier.
- Click Add.
View the SQL database on the ExtraHop system
- Log in to the ExtraHop system through https://<extrahop-hostname-or-IP-address>.
- Click Assets, and then click Devices in the left panel.
- From the device list, click the name of the MS SQL server that you added TLS decryption for.
- In the left panel, select Database.
- Hover your cursor over any top-level metric value (such as Responses), and select By Database from the drop-down list.
You can now view metrics for the SQL database that were previously obscured by TLS
encryption.
Thank you for your feedback. Can we contact you to ask follow up questions?