Why an IPSec tunnel between AR routers frequently flaps

Possible causes for frequent flapping of an IPSec tunnel include:
- The intermediate network is unstable.
- Interfaces frequently alternate between Up and Down.
- During DPD detection configuration, the sequence of the payload in DPD packets on both ends is inconsistent.
To solve this problem, run the dpd msg { seq-hash-notify | seq-notify-hash } command in the IKE peer view to modify the configuration.
- The BFD or NQA status is unstable when the IPSec tunnel is associated with BFD/NAQ.

