What: Need a network timing diagram showing the TCP ports and direction of communications (who does initial SYN to whom) between Mobile Device Management (MDM) server, the Apple Push Notification Server (APNS) and the client iOS device.
Why: In resolving our organization's inability to open TCP ports outbound from the corporate infrastructure to Apple's IP address range per Apple, I find it necessary to have documentation on the flow control of various runtime aspects of the Apple Push Notification Service/Server (APNS).
How: The intent is to explain how blocking access to some of the Apple 17.0.0.0/8 address range will cause seemingly random operational failures in the interaction between the MDM/APNS/iOS device during enrollment, push of profiles, device check-in, and otherwise. Documentation at Apple has been much too high level or pure-text descriptions that can't be used in "mixed company" (deep technical and director level).