What's the fuss all about? Read here.
So port 5222 is plain / TLS. Port 5223 is SSL - but openfire doesn't use OpenSSL. It uses bouncycastle :-)
According to xmpp.net server test my server jabber-server.de uses/allows the following protocols:
StartTLS REQUIRED
SSLv2 | No |
SSLv3 | Yes |
TLSv1 | Yes |
TLSv1.1 | Yes |
TLSv1.2 | Yes |