Clarification on Apple Push Notification Service (APNs) Server Certificate Update 2025 for Azure Notification Hub

Mohit Mathur 0 Reputation points
2025-02-13T09:09:55.4333333+00:00

Hello Microsoft Team,

We are currently using Apple Push Notification Service (APNs) through Azure Notification Hub. We recently received an email from Apple stating that the Certification Authority (CA) for APNs is changing and that an update to the server certificate is required.

Could you confirm whether Microsoft will handle this update on the Azure Notification Hub service side, or if there any changes are required from our end to ensure continued functionality?

We would appreciate any guidance on necessary actions or best practices to avoid disruptions.
Thanks

Azure Notification Hubs
Azure Notification Hubs
An Azure service that is used to send push notifications to all major platforms from the cloud or on-premises environments.
349 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Bhargavi Naragani 965 Reputation points Microsoft Vendor
    2025-02-14T04:13:35.3066667+00:00

    Hi @Mohit Mathur,
    We are aware of the Apple's Push Notification Service (APNS) server, you do not need to worry about this. Azure Notification Hubs will handle it for you, Microsoft keeps these certificates updated, so you can continue using our service without any interruption.

    Microsoft generally maintains the trusted root certificates for Azure Notification Hub so, in general, you shouldn't have to do anything here manually. when Apple does an update to its certificate, then Microsoft will add it into the trust store.

    Regarding your end, if your app is using a self-hosted APNs certificate, the one you uploaded directly to Azure Notification Hubs then you will have to ensure your app's trust store includes the new server certificate: SHA-2 Root: USERTrust RSA Certification Authority certificate. This is an update to support push notification functionality. If you are using the default certificate that we manage, you do not have to do anything.

    SHA-2 Root: USERTrust RSA Certification Authority certificate.


    If the answer is helpful, please click Accept Answer and kindly upvote it so that other people who faces similar issue may get benefitted from it.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.