ADE supervised iPads stop checking in: refresh APNs without Apple Account sign-inSolved

Participant
Discussion
1 day ago Aug 13, 2026

We have several corporate-owned iPads enrolled through Apple Business Manager using Automated Device Enrollment. They are supervised, the APNs certificate is valid, the MDM profile is still installed, and the devices are still assigned to the Hexnode MDM server in ABM. Every now and then, after weeks or months, a device stops checking in. Remote commands stay pending and the device shows as inactive. One thing our technician noticed is that signing into an Apple Account in Settings immediately brings the device back online in Hexnode. We are not using User Enrollment, Account-Driven Enrollment, or Account Creation. Why would signing into an Apple Account restore MDM communication on an already-enrolled ADE iPad? Is there a supported way to refresh APNs or force the device to check in without requiring Apple Account sign-in?

Replies (7)

Marked SolutionPending Review
Hexnode Expert
21 hours ago Aug 13, 2026
Marked SolutionPending Review

For supervised iPads enrolled through ADE, MDM communication is woken up through Apple Push Notification service (APNs). Hexnode sends an APNs wake-up notification, and the device then checks in with the Hexnode server to process pending commands.

An Apple Account is not required for ADE enrollment or for Hexnode MDM sync. However, signing into an Apple Account can cause iPadOS to re-authenticate with Apple services and re-establish its persistent APNs connection. That can make it appear as if Apple Account sign-in is required, even though the actual MDM channel still depends on APNs connectivity, device internet access, and the installed MDM profile.

You can try these supported ways to refresh communication without Apple Account sign-in:

  1. From the Hexnode portal, run Scan Device on the affected iPad. This sends an APNs wake-up notification and can trigger a fresh check-in if the device is online.
  2. On the device, toggle Airplane Mode ON, wait around 10 seconds, then turn it OFF. This forces iPadOS to re-establish network connectivity, including the persistent APNs connection.
  3. Open the Hexnode app on the iPad and swipe down to refresh, if the device is physically accessible.

Also verify the basics for stable APNs communication:

  • The device has working Wi-Fi or cellular connectivity.
  • No VPN, firewall, or network filtering rule is blocking Apple or Hexnode communication.
  • Date and time are correct, preferably with Set Automatically enabled, because SSL/TLS communication can fail if the device time is inaccurate.
Marked SolutionPending Review
Participant
18 hours ago Aug 13, 2026
Marked SolutionPending Review

I tried Scan Device on one of the affected iPads from the portal and the check-in time changed to now. So that seems to wake it up. Does the same portal action work if the device is already marked inactive and deployed at another site? I don’t always have physical access to these iPads.

Marked SolutionPending Review
Hexnode Expert
17 hours ago Aug 13, 2026
Marked SolutionPending Review

Yes. A manual scan or sync action from the Hexnode portal can work on an inactive or remote iPad as long as the device is powered on and connected to the internet. You can verify this remotely from the device record: 

 

 

 

 

 

 

  1. Go to Manage.   

     

     

     

  2. Open the affected Device.  

     

     

     

  3. Check the Action History tab after sending Scan Device Info.   

     

     

     

  4. Check the Last Seen timestamp on the device summary.   

     

     

     

The action status usually means:   

 

 

 

  • Pending: The command has been queued and the APNs wake-up notification has been sent, but the device has not checked in yet.   

     

     

     

  • In Progress / Success: The device received the wake-up, contacted Hexnode, and processed the action.   

     

     

     

If the action remains in Pending for an extended period, the device is most likely powered off, offline, or unable to reach Apple/Hexnode services from its current network.   

 

 

 

 

Marked SolutionPending Review
Participant
12 hours ago Aug 13, 2026
Marked SolutionPending Review

One of our iPads has been inactive for more than a month and the scan action is still pending. Is there anything else that can be done remotely to make it active again?

Marked SolutionPending Review
Hexnode Expert
10 hours ago Aug 13, 2026
Marked SolutionPending Review

If a device has not checked in for a long period and remote actions continue to remain Pending, Hexnode cannot force it online remotely. The device must first reconnect to the internet and receive the APNs wake-up notification. For that device, the practical recovery options are:

  • Confirm the iPad is powered on.
  • Confirm it is connected to Wi-Fi or cellular data.
  • Open the Hexnode app and swipe down to refresh, if someone has physical access.
  • Toggle Airplane Mode off and on to refresh the device network stack.

Once the device reaches APNs and checks in with Hexnode, the pending action status should update and the Last Seen timestamp should refresh.

Marked SolutionPending Review
Participant
7 hours ago Aug 13, 2026
Marked SolutionPending Review

Is there a way to temporarily mark a test iPad as inactive so we can validate this process before it happens again in the field?

Marked SolutionPending Review
Hexnode Expert
2 hours ago Aug 14, 2026
Marked SolutionPending Review

There is no direct option in the Hexnode portal to manually force a specific device into the Inactive state.

If you need to test inactivity behavior, you can adjust the portal-wide inactivity threshold from Admin > General Settings > Inactivity Settings, then change it back after testing. This setting applies to the portal overall, not to a single device or device group. Devices usually become inactive naturally when they stop checking in due to being offline, powered off, on an unstable network, or no longer able to communicate through the MDM channel.

Save