Your screenshot is for the inbound TLS connection to your server. Meaning someone accessing YOUR website. In this case, you're making an OUTBOUND connection to IPS. When your server makes a connection to a remote server... it tells the remote server what versions of TLS that it can use. From your first screenshot, your server looks to be only offering TLS 1.0. IPS servers are saying "Sorry, we don't accept 1.0".
In most cases, it would offer 1.1,1,2, and 1.3. The destination would review the available choices and pick one (typically the most secure version) and say "let's use this". So in this case, your server needs to offer up better choices basically. 🙂