By now, we understand what PKI is and how it works. You also learned about AD CS components and their capabilities. The next thing is to plan the deployment of the PKI. In this section, we will look into the things we need to consider during the PKI planning process.
Planning PKI
Internal or public CAs
AD CS is not just a role that we can install on a server and leave to run. It take knowledge to set up and operate. It needs to be maintained as any other IT system is. It also needs backup and high availability. All this comes with a cost. Public CA certificates need to be purchased through a service provider. Each provider has many different types of certificates with different price ranges. It is important to evaluate these...