Related guides
How to manually uninstall the Cisco client on a Mac
Updated
Short answer: dragging the Cisco icon to the Trash is not an uninstall — the background service and the files in system folders stay behind. How to remove it depends on which of three cases your Mac is in — find yours and do only that one. Case 1: the Cisco folder in Applications still has an uninstaller — use it. Case 2: the uninstaller is missing or does nothing — run the bundled uninstall script in Terminal. Case 3: the script is missing too, or a reinstall still fails after uninstalling — delete the leftover folders, launch items and installer receipts by hand. Restart once afterwards and you can install again. You do not need any of this for a normal update — just install the new version over the old one. Do it only when the installer errors out, the client is broken beyond repair, or an old copy installed by someone else is still on the machine.
When a manual uninstall is needed
- Installing a new version fails — for example it says a newer version is already installed, or the installer quits halfway.
- An old AnyConnect from a previous employer or school is still on the Mac, carrying someone else’s server settings that clash with what you need now.
- You deleted the icon from Applications, but a Cisco icon is still in the menu bar or the client still runs after startup.
- The client will not open or crashes on connect, and reinstalling did not help.
Case 1: the uninstaller is still there — use it
The Cisco client ships with its own uninstaller. In most cases this is all you need.
- Disconnect, then quit the client from its menu-bar icon.
- Open Finder → Applications and go into the folder named Cisco.
- Double-click Uninstall Cisco Secure Client; on the older 4.x release it is called Uninstall AnyConnect.
- Enter your Mac login password when asked and wait until it reports that the uninstall finished.
- Restart the Mac. If the Cisco folder is gone from Applications afterwards, you are done and can ignore the other two cases.
Case 2: the uninstaller is missing or does nothing — use the script in Terminal
The graphical uninstaller only runs a script for you. When it is missing or does nothing, run that script directly; the result is the same.
- Open Terminal: press Command + Space, type Terminal and press Return.
- For the current release (Cisco Secure Client 5.x), paste this line and press Return:
sudo /opt/cisco/secureclient/bin/vpn_uninstall.sh - For the older release (AnyConnect 4.x), use this line:
sudo /opt/cisco/anyconnect/bin/vpn_uninstall.sh - Terminal asks for your Mac login password. Nothing appears on screen while you type — that is normal; type it and press Return.
- If you get “No such file or directory”, that release is not on the Mac or is already partly removed — try the other line. If both lines fail, you are in case 3 — continue with the next section.
- Restart the Mac when the script finishes.
Case 3: no script either, or a reinstall still fails — remove the leftovers by hand
If neither the uninstaller nor the script can be used, or a fresh install still fails after using them, delete what Cisco left in the system yourself. Every command below touches only Cisco’s own folders. Copy and paste each line whole; do not edit the paths or add spaces inside them.
If the Cisco folder is still in Applications and contains an app with Socket Filter in its name, drag that app to the Trash in Finder first. Removing it this way also makes macOS remove the network extension it installed; deleting it with a command does not.
- Open Terminal: in Finder go to Applications, open the Utilities folder inside it and double-click Terminal. Paste each command below and press Return; the first one asks for your Mac login password (nothing appears while you type).
- Remove the program itself:
sudo rm -rf /opt/cisco/secureclient /opt/cisco/anyconnect - Remove the folder in Applications:
sudo rm -rf /Applications/Cisco - Remove the launch items of the background service (run both lines):
sudo rm -f /Library/LaunchDaemons/com.cisco.secureclient.* /Library/LaunchDaemons/com.cisco.anyconnect.* sudo rm -f /Library/LaunchAgents/com.cisco.secureclient.* /Library/LaunchAgents/com.cisco.anyconnect.*- Remove your personal settings (saved server addresses live here; you will have to enter them again):
rm -rf ~/.cisco ~/.anyconnect
Case 3, continued: clear the installer receipts
macOS keeps a record of which version each installer package put on the Mac. With the files gone but the record still there, the installer keeps claiming that a newer version is already installed and refuses to run — so always do this section after removing files by hand.
- List the Cisco receipts in Terminal:
pkgutil --pkgs | grep -i cisco - It prints a few names starting with com.cisco. Run the following once per line, replacing the name at the end with that line:
sudo pkgutil --forget com.cisco.pkg.anyconnect.vpn - Run the first command again; when it prints nothing, the receipts are gone.
All three cases: restart, check, then reinstall
- Restart the Mac. The background service only disappears completely after a restart.
- No Cisco icon in the menu bar and no Cisco folder in Applications means the uninstall is clean.
- To double-check, run this in Terminal; “No such file or directory” is the answer you want:
ls /opt/cisco - Download the macOS installer from our Cisco page and install again. On the first connection macOS asks you to allow a network extension once more — that is expected; follow the guide on the macOS network extension permission.
FAQ
Can I not just drag Cisco to the Trash?
No. Most of the client is not in Applications — it lives in a system folder and has a background service that starts with the Mac. Removing the icon leaves all of that in place, and a reinstall will still clash with it.
Is my account still there after uninstalling?
Yes. Your account and expiry date are stored on the server and have nothing to do with what is installed on the Mac. Uninstalling only clears the server addresses saved on this computer; after reinstalling, enter the address, username and password again.
Do I need to uninstall before a normal update?
No. Install the new version directly; it replaces the old one and keeps your saved server addresses. Uninstall only when the installer fails or the client is broken.
Can I do this on a company-issued Mac?
Better not. On a work Mac the Cisco client is usually managed by IT; removing it yourself may cut you off from the company network, and it is likely to be reinstalled automatically. Ask IT first.
I would rather not install the Cisco client again. Is there an alternative?
Yes. Our Cisco page also offers the open-source OpenConnect GUI client. It uses the same account and the same server addresses and can replace the official Cisco client.
Related pages
- Cisco: client downloads for every platform →
- What the macOS “network extension” permission is →
- Does AnyConnect work in China? →
- Mac says the app “is damaged”: what to do, how to verify the installer →
- Cannot connect, slow, or dropping: how to troubleshoot →
- Contact us: support groups and email →
- Tencent Video or iQIYI Blocked Abroad? Fix It in 5 Steps →
- How to Choose a China VPN →
- Choosing a VPN Router →
- How to Import a Hiddify Subscription →
- China VPN for Students Abroad →
- What a Web Proxy Is and When to Use One →
- Free or Paid China VPN? →
- What the Private Network (Tailscale) Is →
- How to Use OpenVPN and When to Choose It →
- What the Router Firmware Does →
- How to Reach Us and Never Lose Contact →
- Where We Beat Other VPNs →
- How to Recognise a Risky VPN App →
- Which connection method fits which scenario →
- Which Region Is Fastest from Inside China →
- For the TV and the Grandparents at Home →
- Watching Home Cameras and a NAS in China from Abroad →
- What to Do When iOS Cannot Install an App →
- Setting Up for Business Trips and Travel →
- On a Company Laptop: No Admin Rights, Corporate VPN Already On →
- Many Devices, One Setup, No Redo on a New Phone →
- Routing a Synology or QNAP NAS →
- Routing a Linux Server and Command-Line Tools →
- Using RustDesk for remote help →
- Real vs fake split routing on a VPN router →
- Not enough device slots? Temporary vs long-term fixes →
- Dropbox and other apps want an HTTP / SOCKS proxy — what to do →
- How to Get Good Answers from the AI Support →