Limit PPTP user to only see a range of IP's

MT forum can you help me please, i have the idea of what i need to do but putting it into a firewall rule is a little more tricky!
I basically want to limit PPTP user “John Smith”, when he VPNs into our network, that he will only be alllowed to ping/“see” a certain range of addresses or even one or two, does this sound possible?
It doesnt matter what address he assigned just what he can “see”…
Thanks in advance!

In the PPP profile settings, add a value for incoming and outgoing filters for any user of that profile. This creates two jump rules in the ‘ppp’ chain for traffic to and from the appropriate interfaces, then make sure that traffic passes through the ‘ppp’ chain and create chains named as per the incoming and outgoing filters you created. Then use the firewall filter rules in those chains to limit which IP addresses the client may access.

That sounds very good but complicated for a beginner!
could you elaborate on your last point please, creating the filter rules…how do you specify IP addresses they can see?