Hi, I am trying to write a rule to allow certain IP addresses on the inside of my firewall (NAT) to only connect to 1 or 2 IP ranges on the internet. I have tried without success to find some examples online and have played with some rules but without much success. Does anyone have any ideas on this? Your help very much appreciated. Allowed Website Only | | | (Internet) | | ETH0: Public IP ---- FIREWALL (NAT) ---- ETH1: 192.168.1.1 | | Client IP: 192.168.1.100 Jim