By far the most ideal and common posture for an IDS to generally be put is driving the firewall. The ‘powering-the-firewall‘ placement allows the IDS with significant visibility of incoming network visitors and will likely not obtain traffic involving consumers and network. – Jon Hann