watching for multiple IPs within a short timeframe would be possible..
it would serve to at least put them on a 'heightened watch list' that would then log their activities more frequently.. you could have your 'suspect list' then and have the board keep tabs on patterns etc..
it's doable as a modification, of course
