Hi all I am new to the PIX.
How can I block an Internal IP Address from ALL outside access?
And then enable access again, if it is needed?
"Thanks that worked, how can I delete/rename the access list I just recreated?"
no access-list inside deny ip host 192.168.1.10 any
no access-list inside permit ip any any
access-list deny ip host 192.168.1.10 any
access-list permit ip any any
access-group in interface inside
One comment to the other recommendation, this would work as long as the client required nat/pat to get outside. He would still be allowed across vpn tunnels for example. Also, technically it is not denying him from going outside either, it is just not allowing the destination to route back to him.