No, just allow the firewall to access the LLM endpoint, nothing else. And protect the firewall settings from the agent.