Both Openvpn and Wiregurard fail

Jesus, all that comments for nothing.

On a fresh, default ROS installation all you need is described here: http://forum.mikrotik.com/t/mikrotik-wireguard-server-with-road-warrior-clients/148392/1

ROS follows basically the concept described in the WG quickstart CLI section. No Latvian magic involed. https://www.wireguard.com/quickstart/