If managing multiple organizations in your Addigy environment, you can upload and manage multiple Apple Push Notification service (APNs) Certificates to stay in compliance with Apple's MDM Terms of Service which states all managed organizations must have their own Apple Push Notification service (APNs) Certificate by using policy-level MDM Enrollment Profiles.
Note: If you set up an MDM Enrollment Profile inside of a parent policy, it will inherit all child and grandchild policies.
Prerequisites
- Created an Apple Push Notification Service (APNs) Certificate
- Created a Policy
Setting Up The MDM Enrollment Profile
-
From the Policies page, select a policy and click the Integrations & Settings section.
-
Click the MDM Enrollment Profile section.
-
Enter a Display Name, a Company Name, and a Description for the MDM Enrollment Profile.
Note: These fields will be visible to end-users in System Preferences/System Settings (macOS) and Settings (iOS) when the profile gets installed. -
Select an Apple Push Notification service (APNs) Certificate from the dropdown list.
-
Click on Save Profile when you're satisfied with these fields.
New devices that enroll in Addigy MDM via this policy will be enrolled using the Apple Push Notification service (APNs) Certificate you assigned to it.
You can repeat this process to enable different Apple Push Notification service (APNs) Certificates for different policies.
Notes:
- Apple sends notices to the email that was used to create the MDM Certificates when 30, 7, and 1 day remain before the certificate expires: APN Certificates and Apple Business/School Manager Notifications
- Applying a new push certificate to the Policy will not affect currently enrolled devices. If you need to move devices to a new push certificate, please follow this guide: FAQ: My Push Certificate Expired