Just got an email about this.
I'm concerned that this vulnerability may require a client side patch to browsers as well since TLS 1.2 seems to be the latest version available in IE, Safari and Chrome.
Looks like TLS 1.2 is going to be a requirement going forward. However, I'm not aware of an option on the IVE to disable TLS 1.0 & 1.1. This is going to take a firmware update.
Do you have a case open that you can send me your system and user configuration? I have not been able to replicate the issue so far and this may be specific setting on your device.
Scan failed for me too on 8.0R6 - https://www.ssllabs.com/ssltest
'This server is vulnerable to the POODLE attack against TLS servers. Patching required. Grade set to F.
Any news from Juniper on this?