Are the devices recently enrolled in Systems manager or have they been enrolled for a while and just stopped working?
You mentioned you renewed your APNS cert, had it expired before you renewed it? If so you will need to re-enroll your devices, once a push notification certificate expires the MDM can no longer communicate with any of the enrolled devices.
If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.