Omitir para ir al contenido principal
  • Hacer pedidos rápida y fácilmente
  • Ver pedidos y realizar seguimiento al estado del envío
  • Cree y acceda a una lista de sus productos

How to Generate an APNs Certificate for Workspace ONE

Resumen: How to Generate an APNs Certificate for Workspace ONE.

Este artículo se aplica a Este artículo no se aplica a Este artículo no está vinculado a ningún producto específico. No se identifican todas las versiones del producto en este artículo.

Instrucciones

Affected Products:

  • Workspace One

Affected Operating Systems:

  • iOS

Administrators of iOS devices must generate and upload an Apple Push Notification service (APNs) certificate in order to manage iOS devices. This guide shows Workspace ONE administrators how to quickly and complete this process by breaking it down into a few simple steps.

The Apple Push Notification service (APNs) is used to allow Workspace ONE to securely communicate to the smart device fleet over-the-air. Workspace ONE uses the APN's certificate to send notifications to devices when the Administrator requests information or during a defined monitoring schedule. No data is sent through the APN's server, only the notification.

Diagram of Apple Push Notification service

  • Access to the organization group’s Workspace ONE Administration Console
  • Apple ID (or ability to create an Apple ID)
  • Safari, Firefox, Chrome, or Edge web browser (Internet Explorer is not supported): Ensure to work through all the steps in this guide using the same browser session. The APN's generation process with Apple includes time-based and browser-based credentials for security purposes, which mandate following the steps in the Generating an APNs Certificate section to avoid any security or session-related errors. If one browser does not generate the certificate, try a different browser, but ensure to redo or complete all the steps in one session.
Note: If you are looking to renew an expiring APNs certificate, follow the process that is outlined in the Renewing APN's Certificate. Generating an APN's certificate should only be used for initial setups. If a new APN's certificate is generated from scratch, all previously enrolled devices must be reenrolled to become managed. If an APN certificate is expired, a new APN has to be generated.

Generating the APN's certificate is a three-step process:

  1. Download the AirWatch-signed CSR from the Workspace ONE Admin Console.
  2. Upload the AirWatch-signed CSR to the Apple Push Certificate Portal.
  3. Download the Apple-signed certificate (.pem) from the Apple Push Certificate Portal.
    Note: To perform this task, ensure that your Workspace ONE Admin Account has access to the highest Workspace ONE Organization Group. The best practice is to complete the process at the Customer Organization Group level. If your Admin Account does not have access to the highest Organization Group, you may not be able to access the necessary settings.

Download the AirWatch-Signed CSR from the AirWatch Admin Console.

  1. Go to Groups & Settings > All Settings > Devices & Users > Apple > APNs For MDM and then select Generate New Certificate.
    Select Generate New Certificate
  2. Provide the certificate request (step 1) to Apple to process and obtain your certificate, and then upload it into the Workspace ONE console.
    Click MDM_APNsRequest.plist to download the request. If you already have an Apple Id select Go to Apple, and if you do not select Click here and following directions to create one.
    Go To Apple
  3. Sign into the Apple Push Certificates Portal website using a valid Apple ID and password. If you have two-factor authentication enable, verify your identity by entering your Verification Code:
    If the Go To Apple button fails to direct you to the portal, open a new tab and go to: https://identity.apple.com/pushcert/ This hyperlink is taking you to a website outside of Dell Technologies.
    Apple Push Certificates Portal
    Note: An Apple Developer Account is not required for sign-in. While any valid Apple ID works, we recommend you create a separate Apple ID linked to your corporate email account for long-term management.
  4. Click Create a Certificate.
    Click Create a Certificate
  5. Select the "I have read and agree to these terms and conditions" checkbox and click Accept.
    Click Accept
  6. Click Choose File and go to the AirWatch-signed CSR downloaded in Step 2. Find and select the certificate that you downloaded from Apple’s portal named: MDM_APNsRequest.plist
    Choose File
  7. Click Upload (A new certificate for Workspace ONE MDM displays.)
    Click upload
  8. Click Download and save the Apple-signed certificate to an accessible location.
    Note: The document must be in .pem file format.
  1. Return to the Workspace ONE Admin Console and click Next.
    Click Next
  2. Upload the Apple-signed certificate to Workspace ONE that was recently downloaded (.pem file). Enter the Apple ID used to sign into the Apple Push Certificates Portal website previously.
    Update the Apple-signed certificate
  3. Click Save.
  4. This is a restricted action, so you must enter you security PIN.
    Enter security PIN
  5. Verify details on the APNs For MDM page.
    Note: When generating and renewing at a top-level Organization Group, set child groups to inherit or override settings.
  6. Click Save and then x in the upper right corner, and you have completed the task.

To contact support, reference Dell Data Security International Support Phone Numbers.
Go to TechDirect to generate a technical support request online.
For additional insights and resources, join the Dell Security Community Forum.

Productos afectados

VMWare AirWatch, Workspace One
Propiedades del artículo
Número del artículo: 000125393
Tipo de artículo: How To
Última modificación: 02 jul 2024
Versión:  10
Encuentre respuestas a sus preguntas de otros usuarios de Dell
Servicios de soporte
Compruebe si el dispositivo está cubierto por los servicios de soporte.