Firewall rules need to be regularly reapplied

from https://www.qubes-os.org/doc/firewall/#how-to-edit-rules

Note that if you specify a rule by DNS name it will be resolved to IP(s) at the moment of applying the rules, and not on the fly for each new connection. This means it will not work for servers using load balancing, and traffic to complex web sites which draw from many servers will be difficult to control.

You may be interested by this thread: