Skip to main content
Solved

Accidently create new token on Push-Cert renewal

  • October 29, 2024
  • 5 replies
  • 72 views

Franky779
Forum|alt.badge.img+7

Hi there,

i had a message that our push-certificat will run out in 1 month. I probably made a mistake while renewing this cert. I generated a complete new one and now i cannot push to existing computers anymore.

 

sudo profiles renew -type enrollment

 

Registration with the administration server has failed.
The update to an MDM profile contains another push topic

 

What can i do?

Frank

 

Best answer by AJPinto

With anything like this call Apple (or Jamf), and accept that reenrolling 110 devices may be the only option. Everything with device management is certificate based and if you screwed up the certificate, reenrolling may be the only option. In this case, renewing your push certificate with the correct AppleID may resolve most of the issues, some device side work may still need to be done. However, more details are needed to know for sure if reenrolling is needed or not.

 

https://www.jamf.com/contact/

5 replies

Franky779
Forum|alt.badge.img+7
  • Author
  • Contributor
  • October 29, 2024
Different push topic happens when you renew the MDM push certificate with different apple ID. Best option is to contact Apple, they can change the new certificate's topic with the old one. Otherwise you need to re-enroll all devices again. Unfortunately you can not renew enrollment.

 

Re-Enroll all 110 devices is NO option!

Can i see under which account the last certificate was made?


AJPinto
Forum|alt.badge.img+26
  • Legendary Contributor
  • Answer
  • October 29, 2024

With anything like this call Apple (or Jamf), and accept that reenrolling 110 devices may be the only option. Everything with device management is certificate based and if you screwed up the certificate, reenrolling may be the only option. In this case, renewing your push certificate with the correct AppleID may resolve most of the issues, some device side work may still need to be done. However, more details are needed to know for sure if reenrolling is needed or not.

 

https://www.jamf.com/contact/


Franky779
Forum|alt.badge.img+7
  • Author
  • Contributor
  • October 29, 2024

With anything like this call Apple (or Jamf), and accept that reenrolling 110 devices may be the only option. Everything with device management is certificate based and if you screwed up the certificate, reenrolling may be the only option. In this case, renewing your push certificate with the correct AppleID may resolve most of the issues, some device side work may still need to be done. However, more details are needed to know for sure if reenrolling is needed or not.

 

https://www.jamf.com/contact/


OK, lucky me. I found the right Apple ID and started the renewal again. Now everything is fine. Puh!


AJPinto
Forum|alt.badge.img+26
  • Legendary Contributor
  • October 29, 2024

OK, lucky me. I found the right Apple ID and started the renewal again. Now everything is fine. Puh!


Awesome, I'm glad to see things sorted out. I really don't like how apple ties all this to a "shared" Apple Account rather than to an origination that any Apple Account tied to the organization can do.


agungsujiwo
Forum|alt.badge.img+8
  • Contributor
  • October 31, 2024

@Franky779 
This can be my note so that when updating APNS I use the correct Apple ID
Thank you for your sharing