How best to replace the Firewall Rule for known bots

I wonder how best to create a firewall rule to replace the list of “good bots” provided by Cloudflare.

I want to add Facebook, Twitter, GTMetrix, and to remove a bunch of the bots that were originally included in the CF list.

I can create a rule with the IP address/range or ASN for each bot I want, with the action Allow. But I wonder if this is all there is to it, or whether I need to have other concerns.

