IPSEC- Kerberos vs Certificates

From: fnstrat2 (fnstrat2_at_discussions.microsoft.com)
Date: 06/29/04


Date: Tue, 29 Jun 2004 10:58:02 -0700

When deploying an IPSEC policy through Group Policy you can use one of three options. Kerberos(AD) a certificate server, or a shared secret. Kerberos seems to be the quickest and easiest way as far as managing and troubleshooting goes. Does anyone have any input into the pro's and con's between using kerberos or a CA?