Those addresses can change arbitrarily often. Depending on what it is that you are actually trying to achieve with measures like this, you could do something that doesn’t involve shoehorning an infrastructure detail into a security policy.
You might be able to simply ask DNS for the current IP addresses. If done regularly, you basically give control over your security perimeter to anyone in a position to influence nameserver responses, which might or might not be something you want.
Maybe check out Monster Train. That one also landed on Arcade pretty recently.