Close Menu
    Facebook X (Twitter) Instagram
    Trending
    • Workplace Ninja User Group Denmark – April 2026 Meetup
    • Workplace Ninja User Group Denmark March 2026 Meetup
    • Workplace Ninja User Group Denmark February 2026 Meetup
    • Successful Adoption of a “Cloud First” Strategy
    • Speaking at Nordic Virtual Summit
    • Workplace Ninja User Group Denmark February Meetup
    • Workplace Ninja User Group Denmark Meetup – May 2022
    • Workplace Ninja User Group Denmark Meetup – April 2022
    RONNIPEDERSEN.COM
    • Home
    • Enterprise Mobility
      • Configuration Manager
      • Identity and Access
      • Information Protection
      • Intune
    • Cloud and Data Center
      • Data Center Management
      • Group Policy
      • Enterprise Security
      • Hyper-V
      • PowerShell
    • Guides
    • Webcasts
    • Links
    • About
      • Contact me
      • Disclaimer
    RONNIPEDERSEN.COM
    You are at:Home»Enterprise Mobility»Renew Apple Push Notification Certificate for Microsoft Intune

    Renew Apple Push Notification Certificate for Microsoft Intune

    5
    By Ronni Pedersen on March 2, 2015 Enterprise Mobility, Intune

    Today I had to renew my Apple Push Notification for one of my Microsoft Intune demo accounts. The Microsoft MVP Roadshow 2015 is just a few weeks away so it might be a good idea to make sure all my accounts was working as expected.

    Most of the infrastructure for Intune Standalone just works out of the box but certificate renewals are actually something you have to do by yourself Smiley

    So, I thought I’d create this small guide that will walk you through the process. I’ve added a lot of screenshots so everyone knows exactly where we are Smiley

    The Apple Push Notification Certificate will expire after 365 days but don’t worry. Apple will send you a warning before you get there.

    clip_image001

    After you get this reminder, you need to logon to the Microsoft Intune portal (https://manage.microsoft.com), and then you should see something like this:

    clip_image003

    If you click on “Warnings”, you should get a list of all your active Warnings. The one we’re looking for is “The APNs Certificate Is About to Expire“.

    The Microsoft Intune Portal is pretty simple, so if you click the “iOS Mobile Device Management” source link, it will take you to the place we’re looking for.

    clip_image005

    As you can see, we get a warning that the certificate will expire within 7 days. To fix this little problem, we just need to click the “Enable the iOS platform” link.

    clip_image007

    That should send you to the “Upload an APNs Certificate” guide, that will show you 3 steps you need to complete. The first one is the “Download the APNs Certificate Request“.

    clip_image009

    When you click that link, it will open a “Save As” dialog, that will prompt you to save the request file on your local hard drive. Select a folder and provide the file with a name that you think make sense, and click Save.

    clip_image011

    Next we need to click the Apple Push Certificates portal link. That will send you to the following URL: https://identity.apple.com/pushcert/.

    clip_image013

    On the Apple Push Certificate Portal web site, you need to sign in with the Apple ID that you used to request/renew the certificate last year.

    clip_image015

    That should give you a list of all the certificates that you’re currently using (and maybe a few more J).

    As you can see, I have a few test sites so I need to I identify the one I’m using. Based on the expiration date, that should be a simple task.

    When you’ve identified the certificate, just click Renew.

    clip_image017

    In the Renew Push Certificate Portal, browse to the request file, and click Upload.

    clip_image019

    The Apple site has bug that will prompt you to save a renew.json file (It might be an Internet Explorer bug I’m not 100% sure). You don’t need it, so just click cancel if you see this

    clip_image021

    Hit F5 to refresh Internet Explorer.

    You should now see an update date on the certificate.

    clip_image023

    Select the updated certificate, and click Download.

    clip_image025

    That should prompt you to save the Certificate.

    Select a folder for the “MDM_Microsoft Corporation_Certificate.pem” and click Save.

    clip_image027

    For the last step, we need to upload the new certificate to the Microsoft Intune portal.

    This is done by clicking on the “Upload the APNs Certificate” button.

    clip_image029

    Browse to the “MDM_Microsoft Corporation_Certificate.pem” file, add your Apple ID, and click Upload.

    clip_image031

    That’s it.

    clip_image033

    The certificate is now updated and we can relax for another year Smiley

    /Enjoy

    +Ronni Pedersen

    • Tweet
    • Share 0
    • +1
    • LinkedIn 0

    Related

    Ronni Pedersen
    • Website
    • Facebook
    • X (Twitter)
    • LinkedIn

    My name is Ronni Pedersen and I'm currently working as a Cloud Architect at APENTO in Denmark. My primary focus is Enterprise Client Management solutions, based on technologies like AzureAD, Intune, EMS and System Center Configuration Manager. I'm is also a Microsoft Certified Trainer and Microsoft MVP in Enterprise Mobility.

    Related Posts

    Speaking at Nordic Virtual Summit

    Workplace Ninja User Group Denmark February Meetup

    Speaking at Modern Endpoint Management Summit 2022

    5 Comments

    1. Nick on April 27, 2015 14:22

      Thanks, Bang on happy for one more year

      Reply
      • Shyamala on July 5, 2017 12:25

        Hey,

        Ive followed the same steps.But while uploading the APNs to Intune Portal I am getting “The APNs certificate doesn’t match’ error.
        What should I do now? I don’t want delete the existing APNs certificate , as it may lead to reenrolling of all the devices again.
        Is there any other way to resolve the issue?

        Reply
        • Ronni Pedersen on July 5, 2017 12:48

          Are you sure that you’re using the same Apple id that you used for the previous APN? If you are I’d recommend that you open a support ticket at Microsoft. The should be able to help you find the problem.

          Reply
          • Shyamala on July 5, 2017 13:04

            I am pretty sure that same apple id I’ve used , as I have created only one APNs till now.Is there any way to check the Apple Id or Subject Id to make sure that the old .pem and new .pem files are pointing to same account?

            Reply
    2. Pingback: Microsoft Intune Error: The APNs Certificate Doesn't Match - Intune Mike

    Leave A Reply Cancel Reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.

    Follow
    APENTO

    Follow APENTO here:

    Subscribe to Blog via Email

    Enter your email address to subscribe to this blog and receive notifications of new posts by email.

    About
    My name i s Ronni Pedersen and I'm currently working as a Cloud Architect at APENTO in Denmark. My primary focus is Endpoint Management and Security, based on Microsoft technologies. I'm also a Microsoft Certified Trainer and a dual Microsoft MVP in both Security and Windows.
    Recent Posts
    • Workplace Ninja User Group Denmark – April 2026 Meetup
    • Workplace Ninja User Group Denmark March 2026 Meetup
    • Workplace Ninja User Group Denmark February 2026 Meetup
    • Successful Adoption of a “Cloud First” Strategy
    • Speaking at Nordic Virtual Summit
    Archives
    TOP POSTS
    • Deploying Office 2016 using the Click-to-Run Deployment Tool
    • SCCM 2012 - Offline Service for OS Images
    • How to Access the MBAM BitLocker Recover Keys directly in SQL
    • Unleash the Power of MDT 2010 Lite Touch, November 23-24
    • Seattle here we come…
    RECENT COMMENTS
    • cOSHi on Missing “UserType” attribute in Azure AD
    • Gus on Pro Tip: Use Ctrl+Alt+D from the Azure Portal to get performance information
    • Sebi on Prepare for Co-Management: Migrate Intune Devices without user affinity
    • Vadim P on SCCM: Failed to Get Client Identity (80004005)
    • TM on Active Directory Based Activation in an multi domain environment
    DISCLAIMER
    The content on this website is presented "as-is" with no guarantees. The use of scripts from this website is at your own risk. Always test before putting something in production! Opinions expressed are my own.
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.