I'm trying to streamline and organize my firewall rules a bit more and I noticed that when creating a Layer 3 rule, I can put multiple CIDRs and IP Addresses separated by commas. I was going to allow traffic in and out to a specific device, but I assumed I'd have to make a rule for each direction. This is how I've usually done it when allowing traffic for both directions:
![oneway.png oneway.png](https://community.meraki.com/t5/image/serverpage/image-id/11580i3724CA55C9B0548D/image-dimensions/702x103?v=v2)
Is it possible to make 1 rule and allow traffic in and out by separating by comma? Is this good practice? Like this?
![2 way.png 2 way.png](https://community.meraki.com/t5/image/serverpage/image-id/11581iC4A8DBF372B928EC/image-size/large?v=v2&px=999)
NOTE: I'm blocking all other traffic on this subnet, I just want to allow access to this one device. I'll probably break it apart by port if this actually is ideal.
Also, are there other keywords I can use in these SOURCE and DESTINATION (like ANY)? Such as WAN or LAN? Or just use the gateway address maybe?
Thank you