The setup of the client is very simple. Just tick **Enable** and fill out **VPN Server**,
**Username** and **Password**. Be sure that the FQDN matches the name in the certificate
or you will receive an error. Also wildcard certificates can produce errors.
------------------------------
Step 3 - Troubleshoot problems
------------------------------
To troubleshoot connection problems it's best to login via CLI and start OpenConnect manually:
# /usr/local/etc/rc.d/opnsense-openconnect start
Look out for errors like
``To trust this server in future, perhaps add this to your command line: --servercert sha256:9f97a3395d18093a14f0d8e768dabee231af34d9ba35432dfe838d58dd633333``
Now the field **Certificate Hash** comes into play, so please insert the string above without
the hash size and set this one in field **Certificate Hash Type**.