You are talking about the ACLs that you can configure on the Switches?
Then you are IMO out of luck. With an ACL
deny tcp
deny udp
allow IP
ICMP should work, but also all other IP protocols that you likely don't want. This is a job for a firewall.
If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.