SSL/TLS Configuration
TLS encrypts PostgreSQL traffic between clients and servers. In cloud and hybrid networks, treat unencrypted connections as a policy violation. PostgreSQL 18.4 supports modern TLS with hostssl in pg_hba.conf and sslmode=verify-full on clients for hostname-checked mutual trust.