# {{ ansible_managed }} ip daddr {{ hostvars[relayhost].ipv4_addr }} tcp dport { 25, 587 } accept comment "Allow SMTP/submission to relayhost"