Is there a way on the ASA to create a network object using the domain. For example, If I want to block all of yahoo.com, I create an ACL that blocks my source addresses from the inside network to yahoo.com, the ASA could then perform a DNS lookup for yahoo.com and block the IP address. Is there a way to do this on the ASA? This would be beneficial compared to looking up every public IP address for a particular site that I want to block.