Hi @rose-wilson. Whenever you see a cluster of Apple devices suddenly stop communicating on the exact same day despite having internet access, the very first thing you need to check is your APNs (Apple Push Notification service) certificate.
Apple relies entirely on APNs to facilitate communication between the device and the MDM. If that certificate expires, Apple blocks all MDM push notifications, leaving the devices completely isolated from Hexnode.
You can check your status and renew it right away by following these steps:
- In the Hexnode UEM portal, go to Admin > APNs.
- Click Renew Certificate.
- Click Generate CSR to download the request file from Hexnode.
- Click the link to proceed to the Apple Push Certificates Portal.
- Critically important: Sign in using the exact same Apple Account that was used to create the original certificate.
- Find the expired certificate on the list, click Renew, and upload the CSR you just downloaded.
- Download the renewed .pem file from Apple.
- Go back to Hexnode, upload that .pem file, and save.
Note: You must renew the existing certificate. Do not create a brand-new one, or you will break the trust chain and have to factory reset every Apple device in your fleet.
Once the renewal is complete, the devices won’t magically come back online on their own. You will need to go to the Manage tab, select the affected devices, and send the Scan Device action. This pings the devices using the fresh certificate and forces them to report back to the portal.
Best regards,
Eden Pierce
Hexnode UEM