Software Secure Firewall Threat Defense
Platform Secure Firewall Threat Defense Virtual
Activity Onboard

Network Discovery Application Detection Deleting Detectors

Last updated: Jul 29, 2025

Deleting Detectors

You can delete custom detectors as well as individually imported add-on detectors provided by Cisco Professional Services. You cannot delete any of the other Cisco-provided detectors, though you can deactivate many of them.


 

While a detector is in use in a deployed policy, you cannot delete the detector.


 

Deleting an activated custom application detector immediately restarts the Snort process without going through the deploy process. The system warns you that continuing restarts the Snort process on all managed devices and allows you to cancel. Whether traffic drops during this interruption or passes without further inspection depends on how the assigned device handles traffic. See Snort Restart Traffic Behavior for more information.


 

Deleting an activated custom application detector immediately restarts the Snort process without going through the deploy process. The system warns you that continuing restarts the Snort process and allows you to cancel; the restart occurs on any managed device in the current domain or in any of its child domains. Whether traffic drops during this interruption or passes without further inspection depends on how the assigned device handles traffic. See Snort Restart Traffic Behavior for more information.

Procedure

1

Select Policies > Application Detectors.

2

Click Delete (delete icon) next to the detector you want to delete. If View (View button) appears instead, the configuration belongs to an ancestor domain, or you do not have permission to modify the configuration.

3

Click OK.