The short answer is no. Obviously, HIDS is one option. If you really need network IPS (i.e. inline protection), I think your options are pretty limited if you actually want to load private keys on the device. Googling returns only a McAfee product, but there may be others. Breach.com has a product that does this but it's not inline and not ips.
You can possibly solve this architecturally by putting reverse proxies out in front of your web servers and having SSL terminate there.