As long as you make sure no other service (like dhcp server) manages the IP pool that you expose to neutron as the external network, it should be fine to use the range.

As for firewalld rules, I leave this part of the question to those who know more about the service.