Our UTM 9.209-8 adds a line with "Accept */*" to http headers.
This is a wireshark log taken on the webserver when the request was issued by us (through the UTM):

This is a wireshark log taken on the webserver when the request was issued by a third party:

On the UTM we have all features disabled that could mess with this sort of thing. Only Firewall, RED, Wireless Protection, Site-to-Site VPN, Remote Access, Web Application Firewall and HA/Cluster are active.
IP, Web Filtering, Endpoint Protection etc is inactive.
Does anyone have an idea how this header gets added?
This thread was automatically locked due to age.