To stop the rule set named
ipsecpol -w REG -p "
To start the rule set named
ipsecpol -w REG -p "
Assigning Domain IPSEC Policy
"IPSEC policy will remain active even after the Group Policy object to which it is assigned has been deleted. You must unassign the IPSEC policy before you delete the policy object. If you delete the policy objects and keep the policy assigned, the IPSEC Policy Agent will assume it simply cannot find the policy and use a cached copy."
This implies that unless an active change is made to the state of an IPSEC policy assignment, it will remain in effect. Merely applying a new GPO where a previously assigned IPSEC policy assignment is now set to "no" is not considered "disabled"; rather it seems to mean it is "not set".