Only MongoDB now uses a combined PEM file when regenerating SSL material. Other database types keep separate certificate and key files, with coverage for the expected per-database behavior.