If this is in IIS I would recommend you look closer at the suggestion at
http:#a25801360 . Have the web server do it if the firewall option won't work. The server can and then it doesn't require changing each server page (it isn't clear if you use ASP or JSP) and can be set up by site, folder, etc. The logs would work for the start and then you can go into IIS and set up to deny all but the IPs you enter.
If you need details on this option please let us know what web server you use and version (I just assumed IIS based on what you had above).
bol