

Under Topic you will see a unique GUID that you can match up to the correct certificate in the Apple Push Certificates Portal. On an enrolled iOS device, go to Settings > General > Device Management > Management Profile > More Details > Management Profile. If I have multiple APNS certificates, how can I tell which certificate I need to renew in the Apple Push Certificates Portal ? Go to Device Enrollment > Apple Enrollment > Apple MDM Push certificate, and under Expiration you will see the date and time.įor instructions, see Get an Apple MDM push certificate. You can also see certificate expiration dates in the Microsoft Endpoint Manager admin center. How do I know if my APNs certificate is about to expire?Īpple should send an email notification to the Apple ID that requested the certificate at 30 days, 10 days, and 1 day prior to the expiration date. Steps to unenroll (remove) an iOS device can be found here. If you request a new certificate instead of renewing your existing certificate, you will be forced to unenroll and re-enroll all of your existing iOS devices. This means you must ensure that you use the same Apple ID and renew the same certificate from Apple’s site. It is critical that you renew your APNs certificate, not request a new one. Steps to unenroll (remove) an iOS device can be found here.ĭo I need to renew my APNs certificate, or can I just get a new one? When this happens, because the certificate is now different, you will be forced to unenroll and re-enroll all existing, Intune-managed iOS devices. IMPORTANTIf you renew an expired APNs certificate outside of the grace period (30 days as of this writing), Apple will issue you a brand new certificate. If your APNs certificate expires, enrollment of new iOS devices will fail, and you will experience problems managing existing iOS devices until a new APNs certificate is obtained. What happens if I don’t renew my APNs certificate before it expires?

You must be sure to renew your APNs certificate before it expires. Without the APNs certificate, devices could not be enrolled or managed by Intune.īy default, the APNs certificate is good for one year. Intune uses the Apple Push Notification service to communicate securely to your enrolled iOS devices, and Apple requires that each MDM service utilize their own certificate to establish a secure mechanism for devices to use when communicating on Apple’s push notification messaging network. Why do I need to configure an APNs certificate in Intune? We reviewed support cases with a few of our Intune support engineers, and collected common questions about APNs certificates and Intune that should help both new and experienced Intune administrators. You can find general instructions in Get an Apple MDM Push certificate for Intune, but we want to address other questions and issues that you might have. Here in the Intune support organization, we often get questions relating to the Apple MDM push certificate – also known as the Apple Push Notification service (APNs) certificate - and how it plays a role in managing iOS devices. Hornbeck - Sr Support Escalation Engineer | Microsoft Endpoint Manager – Intune First published on TechNet on Jun 11, 2018īy J.C.
