I've used this method and it works fine to block IP addresses from the LAN to access web pages (ie protocols squid acts as a proxy for) but does not block other traffic, like messengers, pop3 and so on. 
Are there any suggestions/contribs for doing this without having to blobk port by port TCP traffic?
There is a contrib that blocks all traffic by IP, but it also blocks local computers from accesing the very SME server. I want LAN users to have access tu webpages and webmail on my server, but no acces to external web pages and services like ICQ, MSNMSG and so...
ANY HELP??
Thanks  
