APNs Certificate Renewal Appears Successful But "Days Left to Fix Issue" Error Persists
iOS
iOS
If you've renewed your APNs (Apple Push Notification service) certificate and received a success confirmation in the Esper Console, but the "days left to fix issue" warning still appears on your home page, your certificate renewal may not have completed the full flow. Follow these steps to resolve the issue.
Before you begin
APNs certificate renewal requires you to use the Renew button on your existing certificate in Apple's Identity Portal — not create a new certificate. Creating a new certificate changes the certificate's Topic UID, which breaks the MDM trust relationship with your devices even if the Esper Console upload appears successful.
Make note of the Apple ID displayed in your Esper Console before starting. You must use this exact Apple ID when renewing your certificate.
How to renew your APNs certificate
- In the Esper Console, navigate to Profile → Apple MDM Management.
- Click Renew Certificate.
- Download the Esper-generated CSR (certificate signing request) file.
- Click Open Apple Identity Portal within the Esper Console and sign in using the Apple ID displayed in your console. Do not use a different Apple ID.
- In the Apple Push Certificates Portal, locate your existing APNs certificate for Esper. Click the Renew button on that certificate entry. Do not create a new certificate.
- Upload the Esper CSR file when prompted by Apple and complete the renewal process.
- Download the renewed
.pemcertificate file from the Apple portal. - Return to the Esper Console and upload the renewed certificate file to Profile → Apple MDM Management.
- Verify that the "days left to fix issue" warning on your Console home page has cleared and that push commands to your iOS devices resume working.
If the warning persists
If you've completed the renewal steps above and the warning still appears, check the following:
- In the Apple Push Certificates Portal, confirm that your certificate status shows as Active and verify that the Topic UID matches what was previously registered in Esper.
- If the Apple ID on your Apple portal does not match the Apple ID displayed in Profile → Apple MDM Management, you will need to start over with the correct Apple ID.
- If your certificate has already expired, your devices may need to be re-enrolled to restore the MDM trust relationship.
Still need help?
If the warning persists after completing these steps or you need assistance with re-enrolling devices at scale, contact Esper Support. include a screenshot of your Apple Push Certificates Portal certificate details and your Esper Console Apple MDM Management page.
Please sign in to leave a comment.
Comments
0 comments