Hello Lee,
you need to use an ACL with a statement like
access-list 111 permit gre host host 172.30.1.6
to define interesting traffic to be encrypted
on the other side a mirrored ACL is needed like:
access-list 112 permit gre host 172.30.1.6 host
Hope to help
Giuseppe