I think your issue is this: The PFSense release doc states that “disabled some older, weaker algorithms” then enumerates what is currently being used.
In my experience, SmarTTY won’t work on anything newer or more secure than diffie-hellman-group-exchange-sha1 with hmac-sha1. Your application, and any hardened system, isn’t using either.
SmarTTY’s kex, cipher, and MAC support is antique, unfortunately.
I’d love to hear from the devs: When is an updated version coming out?!?