Fortinet black logo
7.0.0

Creating an Apple MDM push certificate

Creating an Apple MDM push certificate

Managing macOS devices in Microsoft Intune requires an Apple mobile device management (MDM) push certificate. The certificate enables devices to enroll via the following:

  • Intune Company Portal application
  • Apple bulk enrollment methods, such as the following:
    • Device Enrollment Program
    • Apple School Manager
    • Apple Configurator
To create an Apple MDM push certificate:
  1. Log in to the Microsoft Endpoint Manager Admin Center.
  2. Go to Devices > macOS > macOS Enrollment > Prerequisites > Apple MDM push certificate.
  3. Under step 1, select I agree to permit Microsoft to send data to Apple.
  4. Under step 2, click Download your CSR to download and save the request file locally. You can use this file to request a trust relationship certificate from the Apple Push Certificates Portal.
  5. Under step 3, click Create your MDM push Certificate to go to the Apple Push Certificates Portal.
  6. Do the following in the Apple Push Certificates Portal:
    1. Log in with your company email address Apple ID.
    2. Click Create a Certificate.
    3. Select Choose File, browse to the certificate signing request file, and click Upload.
    4. On the confirmation change, click Download to download the certificate .pem file, and save the file locally.
  7. In the Microsoft Endpoint Manager Admin Center, under step 4, enter your Apple ID.

  8. Browse to the .pem certificate and click Upload. The certificate is uploaded to Intune.

Creating an Apple MDM push certificate

Managing macOS devices in Microsoft Intune requires an Apple mobile device management (MDM) push certificate. The certificate enables devices to enroll via the following:

  • Intune Company Portal application
  • Apple bulk enrollment methods, such as the following:
    • Device Enrollment Program
    • Apple School Manager
    • Apple Configurator
To create an Apple MDM push certificate:
  1. Log in to the Microsoft Endpoint Manager Admin Center.
  2. Go to Devices > macOS > macOS Enrollment > Prerequisites > Apple MDM push certificate.
  3. Under step 1, select I agree to permit Microsoft to send data to Apple.
  4. Under step 2, click Download your CSR to download and save the request file locally. You can use this file to request a trust relationship certificate from the Apple Push Certificates Portal.
  5. Under step 3, click Create your MDM push Certificate to go to the Apple Push Certificates Portal.
  6. Do the following in the Apple Push Certificates Portal:
    1. Log in with your company email address Apple ID.
    2. Click Create a Certificate.
    3. Select Choose File, browse to the certificate signing request file, and click Upload.
    4. On the confirmation change, click Download to download the certificate .pem file, and save the file locally.
  7. In the Microsoft Endpoint Manager Admin Center, under step 4, enter your Apple ID.

  8. Browse to the .pem certificate and click Upload. The certificate is uploaded to Intune.