Create APNs Certificate for Hexnode MDM

Apple Push Notification service (APNs) is a service created by Apple Inc. to handle the
communication to apple devices from third parties.

To communicate with an iOS device, Hexnode MDM server will first send a notification to APNS
server and then the server will in-turn communicate with the device. The APNS server will act as a
gateway of communication to all iOS devices. Hence we need the APNS certificate to authorize this
communication from Hexnode MDM to iOS device.

APNS certificate is valid for one year from the date of creation. You need to renew the certificate
after every 365 days. This process of renewing the certificate is same as creating a new one.

APNS configuration can be done in 3 simple steps.

Step 1: Create a Certificate Signing Request

In your Hexnode MDM portal,

  1. Go to Admin tab, click on APNs settings.
  2. Click on configure APNS certificate.
  3. Download the self-signed-certificate from Hexnode by clicking on Generate CSR Request.

Create APNs certificate - CSR generation

Step 2: Upload the Self-Signed certificate in the Apple Server

Once the certificate is created,

  1. Go to the Apple website and login with your own company Apple ID. Apple’s push certificate terminal link is provided in the product itself.
  2. Click on “Create a certificate” to create APNs certificate.
  3. Upload the self-signed certificate (hexnode_signed_casr.txt).
  4. Download the APNs certificate generated by Apple.

Create APNs certificate screenshot2

Step 3: Upload the APNs certificate back to the application

Upload the APNs certificate (MDM_ Mitsogo Inc_Certificate.pem) back to the application.

Create APNs certificate srceen3

After applying the certificate, you will have the following details displayed under Admin tab, APNs Settings.

Create APNs certificate - certificate details

Renewing APNs certificate

ANPS certificate will have one year of validity from the date of creation, after which you need to
renew the certificate. This can be done by clicking the option renew certificate under the admin
tab, APNS settings. Then you need to follow the same process of APNs certificate configuration.

