(Still on iOS 10.0.1)
Surprise!
This is the analyzation of TLS Client Hello of AirMail on iOS 10.0.1 when connecting to IMAP server:
Version: TLSv1
Record Length: 201
Message Length: 197
Version: TLSv1.2
ServerRandom, Time: 1475313410,
Sat Oct 1 11:16:50 2016
Session ID Length: 32
Cipher Suite Length: 44
0x00 0xFF TLS_EMPTY_RENEGOTIATION_INFO_SCSV
0xC0 0x2C TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 (ECDHE-ECDSA-AES256-GCM-SHA384)
0xC0 0x2B TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 (ECDHE-ECDSA-AES128-GCM-SHA256)
0xC0 0x24 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 (ECDHE-ECDSA-AES256-SHA384)
0xC0 0x23 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 (ECDHE-ECDSA-AES128-SHA256)
0xC0 0x0A TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (ECDHE-ECDSA-AES256-SHA)
0xC0 0x09 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA (ECDHE-ECDSA-AES128-SHA)
0xC0 0x08 TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA (ECDHE-ECDSA-DES-CBC3-SHA)
0xC0 0x30 TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (ECDHE-RSA-AES256-GCM-SHA384)
0xC0 0x2F TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (ECDHE-RSA-AES128-GCM-SHA256)
0xC0 0x28 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (ECDHE-RSA-AES256-SHA384)
0xC0 0x27 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 (ECDHE-RSA-AES128-SHA256)
0xC0 0x14 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (ECDHE-RSA-AES256-SHA)
0xC0 0x13 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (ECDHE-RSA-AES128-SHA)
0xC0 0x12 TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (ECDHE-RSA-DES-CBC3-SHA)
0x00 0x9D TLS_RSA_WITH_AES_256_GCM_SHA384 (AES256-GCM-SHA384)
0x00 0x9C TLS_RSA_WITH_AES_128_GCM_SHA256 (AES128-GCM-SHA256)
0x00 0x3D TLS_RSA_WITH_AES_256_CBC_SHA256 (AES256-SHA256)
0x00 0x3C TLS_RSA_WITH_AES_128_CBC_SHA256 (AES128-SHA256)
0x00 0x35 TLS_RSA_WITH_AES_256_CBC_SHA (AES256-SHA)
0x00 0x2F TLS_RSA_WITH_AES_128_CBC_SHA (AES128-SHA)
0x00 0x0A TLS_RSA_WITH_3DES_EDE_CBC_SHA (DES-CBC3-SHA)
Compression Methods Length: 1
Extensions Length: 80
Extension: 0x00 0x00, Extension Length: 19
Extension: 0x00 0x0A, Extension Length: 8, EC list: sect233k1 secp256r1 secp384r1 secp521r1
Extension: 0x00 0x0B, Extension Length: 2
Extension: 0x00 0x0D, Extension Length: 18
Extension: 0x00 0x05, Extension Length: 5
Extension: 0x00 0x12, Extension Length: 0
Extension: 0x00 0x17, Extension Length: 0
To compare here are the ciphers announced by Mail:
Cipher Suite Length: 50
0x00 0xFF TLS_EMPTY_RENEGOTIATION_INFO_SCSV
0xC0 0x24 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 (ECDHE-ECDSA-AES256-SHA384)
0xC0 0x23 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 (ECDHE-ECDSA-AES128-SHA256)
0xC0 0x0A TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA (ECDHE-ECDSA-AES256-SHA)
0xC0 0x09 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA (ECDHE-ECDSA-AES128-SHA)
0xC0 0x08 TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA (ECDHE-ECDSA-DES-CBC3-SHA)
0xC0 0x28 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (ECDHE-RSA-AES256-SHA384)
0xC0 0x27 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 (ECDHE-RSA-AES128-SHA256)
0xC0 0x14 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (ECDHE-RSA-AES256-SHA)
0xC0 0x13 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (ECDHE-RSA-AES128-SHA)
0xC0 0x12 TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (ECDHE-RSA-DES-CBC3-SHA)
0x00 0x6B TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 (DHE-RSA-AES256-SHA256)
0x00 0x67 TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 (DHE-RSA-AES128-SHA256)
0x00 0x39 TLS_DHE_RSA_WITH_AES_256_CBC_SHA (DHE-RSA-AES256-SHA)
0x00 0x33 TLS_DHE_RSA_WITH_AES_128_CBC_SHA (DHE-RSA-AES128-SHA)
0x00 0x16 TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA (DHE-RSA-DES-CBC3-SHA EDH-RSA-DES-CBC3-SHA)
0x00 0x3D TLS_RSA_WITH_AES_256_CBC_SHA256 (AES256-SHA256)
0x00 0x3C TLS_RSA_WITH_AES_128_CBC_SHA256 (AES128-SHA256)
0x00 0x35 TLS_RSA_WITH_AES_256_CBC_SHA (AES256-SHA)
0x00 0x2F TLS_RSA_WITH_AES_128_CBC_SHA (AES128-SHA)
0x00 0x0A TLS_RSA_WITH_3DES_EDE_CBC_SHA (DES-CBC3-SHA)
0xC0 0x07 TLS_ECDHE_ECDSA_WITH_RC4_128_SHA (ECDHE-ECDSA-RC4-SHA)
0xC0 0x11 TLS_ECDHE_RSA_WITH_RC4_128_SHA (ECDHE-RSA-RC4-SHA)
0x00 0x05 TLS_RSA_WITH_RC4_128_SHA (RC4-SHA)
0x00 0x04 TLS_RSA_WITH_RC4_128_MD5 (RC4-MD5)
Airmail SMTP log entry:
Oct 1 11:12:26 xx dovecot: imap-login: Login: user=<xx>, method=PLAIN, rip=::ffff:90.153.xx.xx, lip=::ffff:81.89.xx.xx, TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits), TLS
Airmail IMAP log entry:
Oct 1 11:12:29 xx dovecot: imap-login: Login: user=<xx>, method=PLAIN, rip=::ffff:90.153.xx.xx, lip=::ffff:81.89.xx.xx, TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits), TLS
Well, actually you CAN use TLS 1.2 with iOS 10.0.1 for SMTP and IMAP but you cannot use it with Apple Mail.