Currently we can block connection to all IP addresses in the policy (policy/rules/http). It might be a good idea to have specific rule - block connections to this domains IP address for this given policy. Currently we can only exclude by Domain IP but we cannot block by Domain IP.
It should also be added to Advanced ACLs.