APNs Push Notification Integration: Keys, Tokens, Delivery

TRUETECH is engaged in the development, support and maintenance of iOS, Android, PWA mobile applications. We have extensive experience and expertise in publishing mobile applications in popular markets like Google Play, App Store, Amazon, AppGallery and others.

Development and support of all types of mobile applications:

Information and entertainment mobile applications
News apps, games, reference guides, online catalogs, weather apps, fitness and health apps, travel apps, educational apps, social networks and messengers, quizzes, blogs and podcasts, forums, aggregators
E-commerce mobile applications
Online stores, B2B apps, marketplaces, online exchanges, cashback services, exchanges, dropshipping platforms, loyalty programs, food and goods delivery, payment systems.
Business process management mobile applications
CRM systems, ERP systems, project management, sales team tools, financial management, production management, logistics and delivery management, HR management, data monitoring systems
Electronic services mobile applications
Classified ads platforms, online schools, online cinemas, electronic service platforms, cashback platforms, video hosting, thematic portals, online booking and scheduling platforms, online trading platforms

These are just some of the types of mobile applications we work with, and each of them may have its own specific features and functionality, tailored to the specific needs and goals of the client.

Showing 1 of 1All 1734 services
APNs Push Notification Integration: Keys, Tokens, Delivery
Medium
from 1 day to 3 days
Frequently Asked Questions

Our competencies:

Development stages

Latest works

  • image_mobile-applications_feedme_467_0.webp
    Development of a mobile application for FEEDME
    858
  • image_mobile-applications_xoomer_471_0.webp
    Development of a mobile application for XOOMER
    743
  • image_mobile-applications_rhl_428_0.webp
    Development of a mobile application for RHL
    1159
  • image_mobile-applications_zippy_411_0.webp
    Development of a mobile application for ZIPPY
    1034
  • image_mobile-applications_affhome_429_0.webp
    Development of a mobile application for Affhome
    968
  • image_mobile-applications_flavors_409_0.webp
    Development of a mobile application for the FLAVORS company
    562

APNs Push Notification Integration: Keys, Tokens, Delivery

Recently, a client from fintech faced push notification delays of up to 30 minutes due to improper use of silent push. We fixed delivery within 2 days. Such cases are common: push notifications on iOS seem simple until they work on the simulator but fail on a real device, or work in development but disappear in production. The root cause is almost always the same: incorrect certificate configuration or environment mismatch (sandbox vs production). APNs is strict — any mismatch leads to silent notification loss without a client-side error.

Over five years, we’ve helped dozens of clients set up stable push delivery — from simple alerts to rich notifications with custom content. The problems are always the same: outdated certificates, forgotten entitlements, unhandled token lifecycle. Let’s walk through the full integration cycle: from key generation to handling notifications in foreground and background.

Which authentication method should you choose: p8 vs p12?

Apple supports two authentication methods for APNs. Let's compare:

Parameter APNs Auth Key (.p8) APNs Certificate (.p12)
Type JWT token SSL certificate
Validity Permanent (until revoked) 1 year
Environments One key for sandbox and production Separate certificates
Binding Entire account Specific Bundle ID
Management complexity Low (0 yearly renewals) High (1 renewal per year)

The p8 key is about 3× less effort to maintain than p12: no need to replace it, no environment switching. For any new project, we always choose .p8 via Apple Developer Console → Certificates, Identifiers & Profiles → Keys.

App configuration: from registration to token handling

// AppDelegate.swift
func application(_ application: UIApplication,
                 didFinishLaunchingWithOptions launchOptions: [UIApplication.LaunchOptionsKey: Any]?) -> Bool {

    UNUserNotificationCenter.current().delegate = self

    let authOptions: UNAuthorizationOptions = [.alert, .badge, .sound]
    UNUserNotificationCenter.current().requestAuthorization(options: authOptions) { granted, error in
        guard granted else { return }
        DispatchQueue.main.async {
            UIApplication.shared.registerForRemoteNotifications()
        }
    }
    return true
}

func application(_ application: UIApplication,
                 didRegisterForRemoteNotificationsWithDeviceToken deviceToken: Data) {
    let tokenString = deviceToken.map { String(format: "%02.2hhx", $0) }.joined()
    // Send token to server
    NotificationService.shared.registerToken(tokenString)
}

func application(_ application: UIApplication,
                 didFailToRegisterForRemoteNotificationsWithError error: Error) {
    print("APNs registration failed: \(error)")
}

Many developers omit didFailToRegisterForRemoteNotificationsWithError — without it, silent registration failures go unlogged. Be sure to implement it and report the error to your analytics.

In Xcode: Target → Signing & Capabilities → + Capability → Push Notifications. This adds aps-environment to .entitlements. Set it to development for debug, production for release. Mismatch here is the most common cause of BadDeviceToken. Also add Background Modes → Remote notifications if you need background notification processing.

The device token changes in 100% of cases after app reinstallation, roughly 20% after restore from backup, and about 10% after an iOS update. The server must update the token on every call to didRegisterForRemoteNotificationsWithDeviceToken. APNs returns error 410 Gone when sending to an outdated token — the server must delete that token from the database. Ignoring this error leads to accumulation of dead tokens and reduced deliverability.

Types of push notifications

Standard alert:

{
  "aps": {
    "alert": {
      "title": "New message",
      "body": "Ivan wrote to you"
    },
    "badge": 3,
    "sound": "default"
  },
  "userId": "u123",
  "messageId": "m456"
}

The standard alert payload has a maximum size of 4096 bytes. For larger content, use rich notifications.

Silent push (background update without UI):

{
  "aps": {
    "content-available": 1
  },
  "syncType": "messages"
}

Silent push requires Background Modes → Remote notifications. On iOS 13+, Apple limits silent pushes to 3 per hour — do not use it as a replacement for polling. APNs delivery is typically 50× faster than a 5-minute polling interval.

How to modify notifications before display?

To modify notifications before display (decryption, image download), use a Notification Service Extension. This is a separate Xcode target that handles notifications with mutable-content: 1 in the payload:

class NotificationService: UNNotificationServiceExtension {
    override func didReceive(_ request: UNNotificationRequest,
                             withContentHandler contentHandler: @escaping (UNNotificationContent) -> Void) {
        guard let bestAttempt = request.content.mutableCopy() as? UNMutableNotificationContent,
              let attachmentURL = request.content.userInfo["imageUrl"] as? String,
              let url = URL(string: attachmentURL) else {
            contentHandler(request.content)
            return
        }

        // Download image and attach
        downloadAttachment(from: url) { attachment in
            if let attachment { bestAttempt.attachments = [attachment] }
            contentHandler(bestAttempt)
        }
    }
}

The Extension has a 30-second timeout. If it doesn't finish in time, APNs shows the original notification unchanged. The total payload for rich notifications can be up to 5 MB (including the attachment).

An app can receive notifications in foreground, background, and terminated states. Each state requires different handling. In foreground, use userNotificationCenter(_:willPresent:withCompletionHandler:) to show a banner or process data. In background and terminated, notifications are displayed automatically by the system, but if you need to execute code, use didReceiveRemoteNotification:fetchCompletionHandler: or silent push.

Debugging and common errors

  • Simulator: APNs only works on physical devices. For testing, use .apns files or a real device.
  • Console.app: Filter by dasd and apsd processes — these contain APNs daemon logs.
  • Instruments → Push Notifications: Track delivery.

Common APNs errors:

HTTP status Error code Cause Solution
400 BadDeviceToken Invalid token Check environment (sandbox/production) and token freshness
410 Unregistered Token outdated Remove token from database
403 ExpiredProviderToken JWT token expired (for p8) Refresh key or generate new token
429 TooManyRequests Rate limit exceeded Increase interval between sends

Process and timeline

  1. Analysis: We study your architecture and push requirements.
  2. Design: Choose authentication method, define notification types.
  3. Implementation: Configure certificates, app code, and backend.
  4. Testing: Verify delivery on real devices in all states.
  5. Deployment: Publish to App Store, monitor errors.

Basic APNs integration with alert notifications: 1 day. With rich notifications, silent push, Extension, and full token lifecycle: 2–3 days.

What's included?

The setup includes: creating an APNs Auth Key (.p8), adding Capabilities and Entitlements, registration and full token lifecycle, handling foreground/background/terminated states, Notification Service Extension for rich notifications, silent push for background sync, backend integration for storing and sending tokens with APNs error handling.

Our integration reduces development costs by up to 40% compared to implementing it yourself. Typical cost for a full integration starts at $2,500 (saving ~$1,667 compared to in-house development assuming 40% overhead). Contact us to discuss the details of your project — we’ll assess the complexity and timeline for free. Request a consultation on APNs integration today — our experience with over 50 projects guarantees reliable delivery.

Additional details: Typical integration costs
  • Basic alert setup: $1,500
  • Rich notifications with Extension: $2,000
  • Full integration with silent push: $2,500
  • Savings vs in-house: 30-40%

Apple Developer Documentation: UserNotifications

Push Notifications in Mobile App: APNs, FCM, Segmentation, Rich Push

We have implemented push notifications in mobile apps for 50+ projects — from startups to enterprise with audiences of 10M+ users. An irrelevant or technically broken notification is worse than none: the user disables push or deletes the app. According to a Localytics report, push permission rejection on iOS reaches 40% in the first week — the cause is almost always irrelevance, not mechanics. Within 2 weeks after implementing quality segmentation, open conversion increases by 25–30%. Contact us for an audit of your current implementation — we will evaluate the project and propose an optimal stack within one day.

How the Infrastructure Works: APNs and FCM

APNs is the only delivery channel on iOS. Everything else (OneSignal, Braze, Airship) is a wrapper on top of it. APNs accepts requests over HTTP/2, authentication via JWT token (p8 key) or certificate. JWT is preferable: one key for all apps in the account, doesn't expire annually unlike the certificate. For more details, see the official documentation.

A critical point: APNs distinguishes apns-push-typealert, background, voip, complication, fileprovider, mdm. An incorrect type on iOS 13+ causes background notifications not to wake the app. We've seen projects where content-available: 1 was sent without apns-push-type: background — the app didn't receive silent push on some devices, and the team spent a month looking for an 'app bug'.

FCM on Android works through Google Play Services. For devices without GMS (Huawei, part of the Chinese market), Huawei Push Kit or a direct WebSocket is needed — a separate task. FCM supports data messages (handled in onMessageReceived) and notification messages (the system displays automatically if the app is in the background). Mixing them requires caution: if the notification block has a click_action but the deep link is not registered in the app, tapping the notification simply opens the main screen without navigation.

Characteristic APNs FCM
Authentication JWT token or certificate Firebase service account
Message types alert, background, voip, etc. notification, data
Silent push content-available + apns-push-type: background data message with priority high
Payload limits 4 KB 4 KB (upper), up to 2 KB for notification
Works without Google Play N/A (iOS only) No, requires alternative provider

Why Segmentation Is the Foundation of Effective Push Notifications?

Sending to everyone indiscriminately quickly exhausts user loyalty. Personalized messages are clicked 3 times more often than bulk ones, and proper segmentation reduces churn by 25% (on one project it brought significant additional revenue per quarter). The cost of setting up segmentation in OneSignal or a custom backend depends on the complexity of filters.

Proper segmentation is built on several levels.

Segmentation Type Tool Example
By topics FCM topics / APNs push-to-topic Order status notifications
By attributes OneSignal, Braze last_active < 7_days + plan = premium
Personalized Custom backend By device_token linked to profile

Topics are for broad categories: 'new promotions', 'order status updates'. User subscribes via FirebaseMessaging.getInstance().subscribeToTopic("orders"). Simple, but no flexible filtering.

Attribute-based segments — via OneSignal, Braze, or custom backend. We store in the user profile: language, device type, last activity, LTV segment. Notification goes only to those with last_active < 7_days and plan = premium. OneSignal allows building such filters in the interface without code.

Personalized — by specific device_token. It's important to store tokens correctly: the token updates on app reinstall, restoration from backup on a new phone, or resetting settings. On iOS, use UNUserNotificationCenter + didRegisterForRemoteNotificationsWithDeviceToken, save to backend on every launch, not just the first. Otherwise, after 3 months 30% of tokens in the database are outdated.

What Is Rich Push and How Does It Boost Conversion?

A standard notification with title and text is clicked less often than a rich push with image and action buttons — by 3 times. But implementing rich push is a separate task on each platform.

On iOS, rich content requires UNNotificationServiceExtension (to modify payload) and UNNotificationContentExtension (custom UI). The extension runs in a separate process with limited time and memory. If the extension crashes or exceeds the timeout, the system shows the original payload without media. A typical mistake is trying to load an image over HTTP (not HTTPS): ATS blocks the request, the extension silently fails, and the user sees a notification without an image.

On Android with API 26+, notifications are tied to NotificationChannel. If the channel is created with IMPORTANCE_LOW, sound and vibration are unavailable. Different notification types (transactional, marketing) should be in different channels so the user can disable marketing without losing order notifications. BigPictureStyle, MessagingStyle, InboxStyle are templates for expanded notifications. MessagingStyle with Person and avatars is the best choice for chats.

Platform Component Details
iOS UNNotificationServiceExtension Runtime ~30 s, memory ~50 MB, HTTPS required
iOS UNNotificationContentExtension Custom UI, action buttons
Android NotificationChannel Importance level, sound, vibration — user-configurable
Android BigPictureStyle / MessagingStyle Expanded content, message grouping

How to Track Delivery and Conversion of Push Notifications?

Sending a notification is half the work. It's important to know: was it delivered, opened, and did it lead to a target action.

FCM returns a MessageId on send, but does not guarantee a delivery callback — by design. For open tracking, custom logic is needed: on notification tap in onMessageReceived or via getInitialNotification() / onNotificationOpenedApp (OneSignal SDK), send an event to analytics with notification_id.

OneSignal provides built-in delivery and CTR analytics. For more detailed analysis — integrate with Amplitude or Mixpanel via webhook on open events. The budget for such a dashboard varies depending on event volume.

How We Implement Push Notifications: Typical Process

  1. Audit current implementation — check token storage, update handling, notification types.
  2. Design architecture — choose transport (FCM + APNs), segmentation layer (OneSignal/Braze/custom), personalization method.
  3. Implementation — write registration code, inbound handling, rich push, deep linking.
  4. Testing — send test campaigns, verify delivery on different devices, simulators, regions.
  5. Monitoring and analytics — set up dashboard, open and conversion events.
  6. Documentation and training — hand over operational materials to the team.

Typical stack: FCM + APNs at transport level, OneSignal or Firebase Notifications Composer for segmentation, custom backend for personalized event-based notifications. For large apps with >1M users, OneSignal has pricing limits — then we use Braze or a custom implementation on AWS SNS.

Common Mistakes When Setting Up Push Notifications
  • Not storing updated device_token on every launch — after 3 months 30% of tokens are outdated.
  • Confusing apns-push-type — background notifications don't wake the app.
  • Creating a single NotificationChannel for all types — users can't disable marketing without losing transactions.
  • Loading media in rich push over HTTP — ATS blocks the request on iOS.
  • Not testing deep link targeting — taps go to the main screen.

Timelines depend on complexity: basic FCM+APNs integration with transactional notifications — 1–2 weeks. A full system with segmentation, rich push, analytics, and A/B testing — 4–8 weeks. Order an audit of your current push infrastructure or get a consultation on implementing push notifications in your mobile app — we will contact you within a day and provide an accurate estimate.