Generated a temporary encryption identity and exercised encrypted database backup and recovery. The final local round trip passed. Earlier backup failures concerned database connection handling, not an observed encryption or decryption defect.
- What worked
- Recipient-based encryption fit the planned automated backup workflow while keeping decryption credentials separate.