So the whole thing was set up using the script on this page, listed under the bridge method.
http://forum.mikrotik.com/t/bypassing-at-t-residential-gateways-with-mikrotik/135563/1
I’m not really sure where everything else went wrong regarding their being two DHCP pools etc.
Here’s a borrowed diagram for how I’m set up right now, eth 3 goes to my ruckus icx7150 which goes to the two APs
For clarification also, the script disabled eth2 after 180 seconds after the RG has communicated to the ONT, and then my understanding is that the WAN spoofs the Mac address of the RG to take over traffic from the ONT