<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Push Certificate non Compiant in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443355#M12822</link>
    <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/1965"&gt;@BrechtSchamp&lt;/A&gt; &lt;/P&gt;&lt;P&gt;I think I created it from scratch not realising that there are 2 options. I tried to renew the old certificate from identity.apple.com and update that certificate. This didn't work.&lt;/P&gt;&lt;P&gt;I have decided to reset the iPads from scratch. Thanks to iCloud, there won't really be any loss of data. As I can only 1 at a time through iTunes. Is there a way I could reset them in bulk? I don't think configurator would work as it would say that they are managed elsewhere.&lt;/P&gt;&lt;P&gt;I'm backing up the .&lt;STRONG&gt;csr&lt;/STRONG&gt;, &lt;STRONG&gt;.pem&lt;/STRONG&gt; and token files now, so that should help if this happens again.&lt;/P&gt;</description>
    <pubDate>Mon, 02 Mar 2020 23:53:43 GMT</pubDate>
    <dc:creator>SimonA11</dc:creator>
    <dc:date>2020-03-02T23:53:43Z</dc:date>
    <item>
      <title>Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443349#M12816</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;A little while ago, a whole lot of our iPads receive an non-compliant push certificate message. While I can fix this, is there a way around this without wiping the device?&lt;/P&gt;</description>
      <pubDate>Wed, 26 Feb 2020 21:15:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443349#M12816</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-02-26T21:15:09Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443350#M12817</link>
      <description>&lt;P&gt;Did your push certificate expire?&lt;/P&gt;&lt;P&gt;&lt;A href="https://documentation.meraki.com/SM/Device_Enrollment/Apple_MDM_Push_Certificate" target="_blank" rel="nofollow noopener noreferrer"&gt;https://documentation.meraki.com/SM/Device_Enrollment/Apple_MDM_Push_Certificate&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Feb 2020 21:29:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443350#M12817</guid>
      <dc:creator>BrechtSchamp</dc:creator>
      <dc:date>2020-02-26T21:29:41Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443351#M12818</link>
      <description>&lt;P&gt;The certificate expired about a month ago. Clicking the &lt;STRONG&gt;Test Certificate&lt;/STRONG&gt; button states that the certificate is valid.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Feb 2020 21:42:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443351#M12818</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-02-26T21:42:00Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443352#M12819</link>
      <description>&lt;P&gt;The current certificate is probably a valid one, but that doesn't mean everything is all right. I think something went wrong during the renewal. For example maybe you used a different apple id to generate the new certificate. The link I posted has some troubleshooting steps. Have a look through those to see if that helps.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Feb 2020 21:55:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443352#M12819</guid>
      <dc:creator>BrechtSchamp</dc:creator>
      <dc:date>2020-02-26T21:55:30Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443353#M12820</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/1965"&gt;@BrechtSchamp&lt;/A&gt; &lt;/P&gt;&lt;P&gt;I tried to renew the old certificate. That hasn't worked. Do you know if Apple keep backups of old certificates, because I don't appear to have an older copy.&lt;/P&gt;</description>
      <pubDate>Sun, 01 Mar 2020 23:00:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443353#M12820</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-03-01T23:00:32Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443354#M12821</link>
      <description>&lt;P&gt;Do you remember how you created your "new" certificate? If you just created it completely new, then you should still be able to download the old one if you log in to the Apple ID that created it originally. If you did renew it, with the CSR request generated by the Meraki dashboard, I'd open a ticket with Meraki support. I don't know if Apple keeps backups of the files.&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 11:06:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443354#M12821</guid>
      <dc:creator>BrechtSchamp</dc:creator>
      <dc:date>2020-03-02T11:06:33Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443355#M12822</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/1965"&gt;@BrechtSchamp&lt;/A&gt; &lt;/P&gt;&lt;P&gt;I think I created it from scratch not realising that there are 2 options. I tried to renew the old certificate from identity.apple.com and update that certificate. This didn't work.&lt;/P&gt;&lt;P&gt;I have decided to reset the iPads from scratch. Thanks to iCloud, there won't really be any loss of data. As I can only 1 at a time through iTunes. Is there a way I could reset them in bulk? I don't think configurator would work as it would say that they are managed elsewhere.&lt;/P&gt;&lt;P&gt;I'm backing up the .&lt;STRONG&gt;csr&lt;/STRONG&gt;, &lt;STRONG&gt;.pem&lt;/STRONG&gt; and token files now, so that should help if this happens again.&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 23:53:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443355#M12822</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-03-02T23:53:43Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443356#M12823</link>
      <description>&lt;P&gt;Use the same Apple account that you used when you first created the token.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Mar 2020 19:23:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443356#M12823</guid>
      <dc:creator>MikeMandalorian</dc:creator>
      <dc:date>2020-03-09T19:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443357#M12824</link>
      <description>&lt;P&gt;You can wipe the devices through Apple Configurator 2 when putting them to DFU.&lt;/P&gt;&lt;P&gt;Not sure if it also works if you mark all iPads, right mouse click and than say "factory reset"&lt;/P&gt;&lt;P&gt;We are wiping daily over 50 iOS devices managed and unmanaged. DFU always works &lt;SPAN class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;&lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Mar 2020 21:26:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443357#M12824</guid>
      <dc:creator>beks88</dc:creator>
      <dc:date>2020-03-09T21:26:13Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443358#M12825</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/14661"&gt;@beks88&lt;/A&gt;  Great. It might try the DFU mode as we also run Apple Configurator 2. However, it seems that you can only put 1 device at a time into DFU mode. Do you know if it's possible to put a stack (approx 5) into DFU mode at the same time?&lt;/P&gt;</description>
      <pubDate>Tue, 10 Mar 2020 02:36:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443358#M12825</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-03-10T02:36:19Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443359#M12826</link>
      <description>&lt;P&gt;&lt;SPAN&gt;&lt;EM&gt;"Do you know if it's possible to put a stack (approx 5) into DFU mode at the same time?"&lt;/EM&gt; - What do you mean exactly?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;You have to touch every device and put it into DFU. After that u can update/reset all 5 (using a hub) at the same time with AC2.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We use a ten port hub with external power and are able to update/reset all devices at same time.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Mar 2020 22:51:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443359#M12826</guid>
      <dc:creator>beks88</dc:creator>
      <dc:date>2020-03-10T22:51:12Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443360#M12827</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/14661"&gt;@beks88&lt;/A&gt; Sorry if that was confusing. I'll re-phrase it.&lt;/P&gt;&lt;P&gt;If I put an iPad in DFU mode using iTunes, can I then unplug the iPad (before restoring it), and connect it to my hub with AC2? Then, when I have a stack ready to go, reset that stack of iPads?&lt;/P&gt;</description>
      <pubDate>Tue, 10 Mar 2020 23:03:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443360#M12827</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-03-10T23:03:34Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443361#M12828</link>
      <description>&lt;P&gt;Why not connecting all iPads to the hub, starting AC2 and put one by one into DFU while they are connected to the Mac running AC2?&lt;/P&gt;&lt;P&gt;For DFU you have to use the hardware keys on the device. There is no way to put a device into DFU through iTunes. iTunes will just recognize the device is in DFU like AC2 will. But with AC2 you can update/restore more devices at the same time so you save yourself some time.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Mar 2020 07:43:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443361#M12828</guid>
      <dc:creator>beks88</dc:creator>
      <dc:date>2020-03-11T07:43:29Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443362#M12829</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/14661"&gt;@beks88&lt;/A&gt; &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/2208"&gt;@MikeMandalorian&lt;/A&gt; &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/1965"&gt;@BrechtSchamp&lt;/A&gt; &lt;/P&gt;&lt;P&gt;Thanks. DFU mode seems to be working for resetting a stack through Apple Configurator 2. They seem to connect back into Meraki quite well after that.&lt;/P&gt;&lt;P&gt;However, after resetting the devices, they are all activation locking with my apple ID. This seems to happen if I wipe the iPad in either iTunes or Apple Configurator 2.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2020 00:33:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443362#M12829</guid>
      <dc:creator>SimonA11</dc:creator>
      <dc:date>2020-04-06T00:33:09Z</dc:date>
    </item>
    <item>
      <title>Re: Push Certificate non Compiant</title>
      <link>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443363#M12830</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/30457"&gt;@SimonA11&lt;/A&gt; This could be also the Apple ID you are using for Apple Business Manager.&lt;/P&gt;&lt;P&gt;You can try clearing the activation lock in bulk through Dashboard. Check this post from &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/13052"&gt;@Kevin_C1&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;A href="https://community.meraki.com/t5/Endpoint-Management-Systems/Activation-Locked-iPads/m-p/49665/highlight/true#M4827" target="_blank"&gt;https://community.meraki.com/t5/Endpoint-Management-Systems/Activation-Locked-iPads/m-p/49665/highlight/true#M4827&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2020 07:20:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/push-certificate-non-compiant/m-p/5443363#M12830</guid>
      <dc:creator>beks88</dc:creator>
      <dc:date>2020-04-06T07:20:31Z</dc:date>
    </item>
  </channel>
</rss>

