CheckPoint Exam Questions

Why are certificates preferred over pre-shared keys in an IPsec VPN?

Why are certificates preferred over pre-shared keys in an IPsec VPN?

A.
Weak performancE. PSK takes more time to encrypt than Diffie-Hellman.
B. Weak Security: PSK are static and can be brute-forced.

C.
Weak security: PSKs can only have 112 bit length.

D.
Weak scalability: PSKs need to be set on each and every Gateway.