I am not sure if there is some hidden functionality already in place but with all of the DDoS attacks out there I thought maybe this would be a good feature for the future.
iptables has a -m recent module to control connections from IPs based on a time period. So if a source makes too many requests within a period it will block them. Quite useful in resource exhaustion type attacks/DDoS.
Just a thought.