Yes CA Directory can support both versions of the SSL protocol on different connections (determined during the handshake).
Since r12 SP14, CA Directory ships in TLS only mode, this can be downgraded by making the following configuration change on all servers:
Note: fips = true can't be enabled as this forces TLS.
$DXHOME/config/ssld/default.dxc
set ssl = {
# folder containing DSA personality certs
cert-dir = "config/ssld/personalities"
# trusted root CA that signed DSA certificates
ca-file = "config/ssld/trusted.pem"
# SSL options
# cipher = "ALL:!EXPORT40:!ADH:!SSLv2:!EXP:!LOW" # default ciphers - syntax on OpenSSL website
protocol = ssl
# fips = true # enables FIPS 140-2 compliant encryption
# HSM options
# pin = "<str>" # HSM pin
# lib = "<str>" # path to PKCS11 library supplied by HSM vendor
# slot = <num> # slot to use for HSM based encryption
};