Yes, that would accomplish what you want.
Though if you wanted to lock things down further, your access-list could be more specific and only allow what is required. For Internet, it would be tcp/80 and tcp/443. And udp/53 (DNS) depending on what your hosts have configured for a DNS server.
Regards,
Tim