Set up iOS and Mac device management
For help to set up your iOS or Mac device, see Using your iOS or Mac OS X device with Intune.
Intune enables mobile device management (MDM) of iPads, iPhones, and Mac OS X devices and gives users access to company email and apps. An Apple Push Notification service (APNs) certificate is required for Intune to manage iOS and Mac devices. After the certificate is added to Intune, users can install the Company Portal app to enroll their devices, or the admin can set up corporate-owned iOS device management.
Set up Intune
If you haven’t already, prepare for mobile device management by setting the mobile device management authority as Microsoft Intune and setting up MDM.
Get a certificate signing request
As an administrative user, open the Microsoft Intune administration console, go to Administration > Mobile Device Management > iOS and Mac OS X > Upload an APNs Certificate, and then choose Download the APNs certificate request. Save the certificate signing request (.csr) file locally. The .csr file is used to request a trust relationship certificate from the Apple Push Certificates Portal.
Get an Apple Push Notification service certificate
Go to the Apple Push Certificates Portal, and sign in with your company Apple ID to create the APNs certificate by using the .csr file. After choosing Upload on Apple's Push Certificate Portal, you will receive a .json file that cannot be used for APNs. Complete the download, return to the Apple Push Certificates Portal for Certificates for Third-Party Servers, and then choose Download.
Download the APNs (.pem) certificate, and save the file locally. This Apple ID must be used later to renew your APNs certificate.
Add the APNs certificate to Intune
In the Microsoft Intune administration console, go to Administration > Mobile Device Management > iOS and Mac OS X > Upload an APNs Certificate, and then choose Upload the APNs certificate. Go to the certificate (.pem) file, choose Open, and then enter your Apple ID. With the APNs certificate, Intune can enroll and manage iOS devices by pushing policy to enrolled mobile devices.
Tell users how to get access to company resources with the company portal
Your users will need to know how to enroll their devices and what to expect after they're brought into management.
If your company or organization buys iOS devices for users, those devices can also be enrolled for management as company-owned iOS devices.