Hi!
In Road Warrior setup with Mode Conf at the end of IPsec Server Config section:
/ip ipsec peer
add auth-method=pre-shared-key-xauth generate-policy=port-strict mode-config=RW-cfg \
policy-template-group=RoadWarrior secret=123 passive=yes
Is this correct? Or maybe /ip ipsec identity was assumed?