Tag in Twitter for any questions too!ģ/1: Updated post to clarify the steps as noted under section "Steps for new enrollments after February 10, 2021" are only needed if new enrollment fails.ģ/26: Updated the steps for new enrollments after February 10, 2021. ![]() Let us know as if you have any questions on the steps in this post. Select "New Server" and paste the URL from step 3 into the "Host name or URL" text box.In Apple Configurator 2, right click the device and select "Prepare.".When you go through the resolution, it will ensure all components involved in your enrollment profile work as expected. In Apple Configurator 2, right click the devices and select Re-export the URL and repaste that into your server list in Apple Configurator 2. Creating a new Apple Configurator profile will have the same effect, so we recommend going with what’s easiest for you. For this step, you’ll just need to “touch” (which will get the profile to resync) your profile. We expect the new certificate rollout to be completed after February 10, but again check this blog post for additional information on the certificate rotation. If you’re looking to enroll a device through Apple Configurator after the certificates update is completed, the Apple Configurator profile will need to be updated to point to the new certificate. Note: Please follow the steps below only if new enrollment fails. Steps for new enrollments after February 10, 2021: This will ensure for a short period of time enrollment proceeds as necessary. On the "Define an MDM Server" click the + icon and select the Baltimore CyberTrust Root from where you downloaded it. ![]() Select "New Server" and paste the URL from step 4 into the "Host name or URL" text box.Choose "Manual Configuration" in the "Prepare with:" drop down.In Apple Configurator 2, right click the device and select "Prepare".In the Microsoft Endpoint Manager admin center, under Home > Devices > iOS/iPadOS > Apple Configurator, select the profile, and then "Export Profile".In Safari, this can be done by clicking the padlock next to the URL, clicking "Show Certificate", selecting Baltimore CyberTrust Root certificate and then dragging the large icon to the Desktop. NOTE: In Microsoft Edge or Chrome, this can be done by clicking the padlock next to the URL, clicking "Certificate", selecting Baltimore CyberTrust Root certificate and then dragging the large icon to the Desktop. You can read more about getting the Baltimore Cybertrust root certificate here: Configure Trusted Roots and Disallowed Certificates | Microsoft Docs. Download the Baltimore CyberTrust Root certificate. ![]() Here are the steps you’ll take on a macOS device per the instructions here: iOS/iPadOS device enrollment - Apple Configurator-Setup Assistant - Microsoft Intune | Microsoft Doc.: Steps for new enrollments between January 14, 2021- February 10, 2021:įor enrollment in the next few weeks until the new certificates described in MC225591 and also described in this blog post are fully deployed across the entire service, you’ll want to add the Baltimore CyberTrust Root Certificate back to the list of certificates in your profile to ensure that enrollment can complete through setup assistant. The error in device logs either indicates there’s no service response or enrollment can’t succeed so no errors are logged.
0 Comments
Leave a Reply. |