what you show is not enough to tell you where to add this rule. I suppose rule you show is part of some "Chain" that must be shown in order to bring understanding.
Anyway, if you also think a this twice:
- you added domain in GUI and get IP based rule in iptables
- you want to add bypass for some specific IP
Assuming Zentyal is also your primary DNS, let's try this dirty workaround
- in DNS section, create new domain. Let's call it "bypass.my"
- assign your application IP to this domain
- add exception in HTTP proxy for this domain. It should be solved using yor own DNS entry (I hope)
- check iptable to ensure you get the right rule and try to access your application.
I guess this should work and and bypass.my domain doesn't exists, having it in your own DNS doesn't hurt.
Once done, you will have more time to think about explicit proxy implementation