<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Exchange type 6]]></title><description><![CDATA[<p dir="auto">I'm trying to get ShrewSoft VPN client to do IPSec to the pfSense. All goes well (I think!) until ISAKMP fails with an exchange type 6:</p>
<pre><code>Nov 13 23:52:17 	racoon: ERROR: Invalid exchange type 6 from 213.208.116.33[500].
Nov 13 23:52:17 	racoon: INFO: ISAKMP-SA established 10.230.10.2[500]-213.208.116.33[500] spi:6301b7c71343d988:d97babeee7cdd9f6
Nov 13 23:52:17 	racoon: INFO: received Vendor ID: DPD
Nov 13 23:52:17 	racoon: INFO: received broken Microsoft ID: FRAGMENTATION
Nov 13 23:52:17 	racoon: INFO: received Vendor ID: RFC 3947
Nov 13 23:52:17 	racoon: INFO: received Vendor ID: draft-ietf-ipsec-nat-t-ike-02
Nov 13 23:52:17 	racoon: INFO: received Vendor ID: CISCO-UNITY
Nov 13 23:52:17 	racoon: INFO: begin Aggressive mode.
Nov 13 23:52:17 	racoon: INFO: respond new phase 1 negotiation: 10.230.10.2[500]&lt;=&gt;213.208.116.33[500]
</code></pre>
<p dir="auto">Anyone know what this means, or how to fix it? I'm assuming this is phase 2 since it stops before this if I make a mess of phase 1.</p>
]]></description><link>https://forum.netgate.com/topic/2601/exchange-type-6</link><generator>RSS for Node</generator><lastBuildDate>Thu, 16 Apr 2026 01:33:06 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/2601.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 13 Nov 2006 23:42:54 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Exchange type 6 on Wed, 29 Nov 2006 10:17:04 GMT]]></title><description><![CDATA[<p dir="auto">Yepp I got the same problem and have anyone any clue to solve it???</p>
<p dir="auto">Greetings, Marcel</p>
]]></description><link>https://forum.netgate.com/post/144980</link><guid isPermaLink="true">https://forum.netgate.com/post/144980</guid><dc:creator><![CDATA[msatter]]></dc:creator><pubDate>Wed, 29 Nov 2006 10:17:04 GMT</pubDate></item><item><title><![CDATA[Reply to Exchange type 6 on Tue, 28 Nov 2006 01:47:53 GMT]]></title><description><![CDATA[<p dir="auto">OMG! Now world+dog will think it's me that's broken it  :o</p>
]]></description><link>https://forum.netgate.com/post/144913</link><guid isPermaLink="true">https://forum.netgate.com/post/144913</guid><dc:creator><![CDATA[PurpleOfPants]]></dc:creator><pubDate>Tue, 28 Nov 2006 01:47:53 GMT</pubDate></item><item><title><![CDATA[Reply to Exchange type 6 on Mon, 27 Nov 2006 23:34:34 GMT]]></title><description><![CDATA[<p dir="auto">I am also having this exact same issue..</p>
<p dir="auto">I just tried 1.0, and the 2.0 Alpha of the Shrew Soft client. The client hangs at "Bringing up tunnel" and the pfsense ipsec logs</p>
<p dir="auto">"racoon: ERROR: Invalid exchange type 6 from xxx.xxx.xxx.xxx"</p>
<p dir="auto">I've tried all that I can think.. This post is actually the first thing that came up on google.. :)</p>
<p dir="auto">Riley</p>
]]></description><link>https://forum.netgate.com/post/144906</link><guid isPermaLink="true">https://forum.netgate.com/post/144906</guid><dc:creator><![CDATA[Skud]]></dc:creator><pubDate>Mon, 27 Nov 2006 23:34:34 GMT</pubDate></item></channel></rss>