You can certainly add any rules you like to the rule set. I prefer to keep it as short and compact and simple as possible. But there's nothing saying you can't add rules to block specific ports. If you're talking about inbound traffic though, why not just put a block all rule at the end to shut out anything else? To me, this is easier than adding a dozen rules for specific ports. Unless there's some other reason for them...