Prevent internet access to an IP
- 
 Hi all, 
 I wanna config a rule to prevent Internet access to an local IP, plz guide me to do this.
 Thx all for any help,
- 
 The default behaviour is to block connection attempts from the pfSense WAN interface so connect wahtever interface you have configured as WAN to the internet. 
- 
 Probably meant blocking a local system from accessing the internet. If that's what you want, add a block rule on LAN with the local system's IP as the source address and use LAN subnet for destination with the "not" checkbox checked. 
- 
 To build on what Efonne said, be sure that the block rule goes at the top of the list - above the pass all rule. 
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
