I have observed the IPSec subsystems restart each time you add (or change) a VPN entry and then once again when the entry gets activated.

On the old RF650VPN this is true, everytime you make changes to one tunnel it will restart all tunnels. But in the new RF660VPN, it should NOT do this. Changes on one tunnel does not restart all the other tunnels.