Can you confirm whether a reboot is required when enabling tunnel-services?
And if it support 1 Gbps BW for the service.
For enabling the tunnel-services on any FPC, you need not reboot the FPC & it will enabled after commit.
In MX304, the tunnel-services are implemented as a fixed virtual PIC with a fixed bandwidth of 10g.
So even if you add as 1g, it wont be supported. Hence we need to go with 10g minimum & no restart is needed.
https://www.juniper.net/documentation/us/en/software/junos/interfaces-encryption/topics/topic-map/configuring-tunnel-interfaces.html
As per doc,
When you configure tunnel bandwidth of 1Gbps, the configuration commit does not fail. If you newly commit an inline tunnel service configuration with the bandwidth of 1Gbps or apply it as part of MX304 reboot, tunnel interfaces are not created. However, no error message is displayed.