Looking at your IPs, you could just allow the whole network ("192.168.2.0/24"), but you said you didn't want IP ranges.
If this is a bash file you are adding this to, you could write a quick script that does something like:
Code:
iplist="192.168.2.8 192.168.2.98 192.168.2.201"
for ip in $iplist; do iptables -A INPUT -i eth0 -s $ip -p tcp --dport 80 -j ACCEPT
Also, you said multiple services... you can also do multiple ports in one fell swoop using the "multiport" module, like so:
Code:
iptables -A INPUT -i eth0 -s whatever -p tcp -m multiport --dports 17,23,42,80 -j ACCEPT