
02:18:52 SIGUSR1 received, process restarting 02:18:52 TLS Error: TLS handshake failed 02:18:52 TLS Error: TLS object -> incoming plaintext read error

02:18:52 TLS_ERROR: BIO read tls_read_plaintext error

02:18:52 OpenSSL: error:0A000086:SSL routines::certificate verify failed 02:18:52 VERIFY ERROR: depth=0, error=CA signature digest algorithm too weak: C=US, ST=CA, L=SanFrancisco, O=naphaso, OU=naphaso, CN=naphaso, name=naphaso, serial=1 02:18:47 SIGUSR1 received, process restarting 02:18:47 TLS Error: TLS handshake failed 02:18:47 TLS Error: TLS object -> incoming plaintext read error 02:18:47 TLS_ERROR: BIO read tls_read_plaintext error 02:18:47 OpenSSL: error:0A000086:SSL routines::certificate verify failed 02:18:47 VERIFY ERROR: depth=0, error=CA signature digest algorithm too weak: C=US, ST=CA, L=SanFrancisco, O=naphaso, OU=naphaso, CN=naphaso, name=naphaso, serial=1 If you need this fallback please add '-data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to -data-ciphers. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. Version OpenVPN 2.5.5 x86_64-pc-linux-gnu

Otherwise, client connection logs will be very helpful. What version of openvpn client do you use? if it is 2.6.x or latter please try to downgrade client to 2.5.x version.
