Block any internet/external network access for a block of IP's Policy

How would one go about creating a policy on blocking all outside network access for a specific block of IP's. The specific block of IP's should only be able to access the internal network. Using a Firebox M200.


    Add an Any packet filter, From: the IP addr range or subnet To: Any-external, set this to Denied.
    Move this policy to the top of the policy list.

    I think that worked. Thanks Bruce!

