I would suggest you go for a mikrotik, it does all of the above but not so sure bout the IPS.It's cheaper than other routers and most of all based on GNU/Linux.Or you can get to install in a x86 box and power xen to run other stuff for you.

On Thu, Aug 6, 2009 at 6:30 PM, Steve Muchai <smuchai@gmail.com> wrote:
lemme add to Wash's take, inline....


2009/8/5 Joe Murithi Njeru <joe.njeru@gmail.com>:
> Hi Odiambo,
>
> Yes detection & prevention must come together.
>

IDS - Snort.
IPS - psad - http://cipherdyne.org/psad/. Used this combination before
and works great.

BR,
S