    Whats the best way to block all Internet traffic while allowing all Intranet traffic?


      Title says it all.


      Normally this would be handled via our main company firewall, but for a few machines, I need to do it client side.


      The goal:

      Block all internet traffic (incoming and outgoing) while allowing all intranet traffic.  At the moment my plan is to create a new trusted network policy, whitelist all of our internal IP ranges, and then block everything else.  The downside is, there is no way to import a list of IP ranges which means I will be cutting/pasting a few hundred entries.


      Can anyone think of a better way of doing this?