Nice!
If you want make things harder for attackers, check out IPtables rate limit[1], nicely implemented also in Shorewall[2]
[1] https://debian-administration.org/article/187/Using_iptables...
[2] http://www.shorewall.net/4.6/manpages/shorewall-rules.html