As I said the alternatives to AEADs have well-known security issues that AEADs are immune to by design. Keeping 1.0 and 1.1 around requires keeping CBC ciphers around and all the workarounds and careful design required to avoid exposing padding oracles using them, and requires keeping your software patched as new vulnerabilities from those oracles are discovered. Eliminating TLS 1.0 and 1.1 will meaningfully improve the overall security of the TLS ecosystem. Also, you didn't address my point about using a proxy server which should let you keep using your ancient software. (Also also, it looks like that's Mac software from 2007, will it continue working after Apple drops 32-bit support?)