Putting a range on ip services (and snmp communities) is a quick way to limit access to the admin features
to a single or a few networks, but when you want long lists like that it is probably better to use the firewall filter
for “input”, where you can use an ip address list, which can contain elements with comment.
“input” is only used for access to the router itself (admin, services like DNS running on the router), so it is easy
to keep the filter separate from “forward” which is the routed traffic which will have less limitations.