Your company is extending their network by opening a new Remote Office in a different city. In the HeadQuarters, you run EIGRP between buildings and the design team has decided to add the Remote Office into the EIGRP domain and to maintain the same level of protection/privacy over the Internet.
To achieve this you must configure an IPsec tunnel and run EIGRP over it - you've chosen to use the old method of crypto maps with a GRE tunnel that allows you to run dynamic routing protocols over IPsec.

You perform the configuration below:


and you see that you have a successfull IPsec tunnel between HQ and Remote Office and the EIGRP peering is also UP:

Sending 5, 100-byte ICMP Echos to, timeout is 2 seconds:
Success rate is 100 percent (5/5), round-trip min/avg/max = 52/76/100 ms
HQ-Router#sh crypto isakmp sa
dst             src             state          conn-id slot status       QM_IDLE           1001    0 ACTIVE
HQ-Router#sh crypto ipsec sa
   local  ident (addr/mask/prot/port): (
   remote ident (addr/mask/prot/port): (
    #pkts encaps: 9, #pkts encrypt: 9, #pkts digest: 9
    #pkts decaps: 8, #pkts decrypt: 8, #pkts verify: 8
*Mar  1 01:35:27.435: %DUAL-5-NBRCHANGE: IP-EIGRP(0) 100: Neighbor (Tunnel1) is up: new adjacency
HQ-Router#sh ip ei nei
IP-EIGRP neighbors for process 100
H   Address                 Interface       Hold Uptime   SRTT   RTO  Q  Seq
                                            (sec)         (ms)       Cnt Num
3            Tu1               14 00:00:06   84  5000  0  29
2              Fa1/0             10 00:05:49   52   312  0  120
1              Fa0/1             13 00:05:51   53   318  0  119
0              Fa0/0             11 00:05:53   50   300  0  121

After a while, you are aproached by the NOC telling you that the new IPsec tunnel and the EIGRP neighborship keep flapping up and down, impacting the connectivity between HQ and the remote office.

What is the problem ?

