The comparison to public-key authentication is wrong. Introducing cert authentication brings a third party: public key infrastructure (which isn't addressed at all and is described as some type of security panacea).
The more apt comparison should be made to other authentication technologies like, in particular, kerberos.
The more apt comparison should be made to other authentication technologies like, in particular, kerberos.