The useful thing about Access Control is that you can use CIDR to define allowed/denied ranges, so you can just deny everyone except 192.168.1.0/24 access to the web server. :-) And if you want to get fancy, you can then make it redirect to another web page (perhaps extranet or public web site page?) if a denied user hits the intranet server.