To configure Wireguard, choose a private network an IP addresses for the tunnel, for example 172.16.0.1 for the RUTX and 172.16.0.2 for the mac.
On the mac: set AllowedIps=10.10.30.0/24,172.16.0.1 and of course the keys, endpoints, ListenPort, DNS, MTU(=1420)
On the RUTX: set AllowedIPs=172.16.0.2 + the address of the ethernet interface of the mac. Enable input,output,forwarding,masquerade in the wireguard->lan and lan->wireguard firewall zones.
The routes on the RUTX should be good but better to check (ip route show), if not ip route add (the IP of the mac) via 172.16.0.2 dev (the tunnel name) metric 2.