@flebourse In case you (or anyone else) were wondering, I stood up a Wireguard site-to-site tunnel today between a RUT240 running 7.03.4 and a pfSense firewall in a datacenter. The unit had been running an IKEv2 IPSEC tunnel previously. I disabled that and built a new WG configuration.
This unit only has a 100Mbit uplink, so not an ideal test of max. thruput, but I can say that the Wireguard tunnel performs very well, about 15% faster thruput, and uses only ~40% CPU where the IPsec was above 93% consistently while saturating the tunnel. So I'm going to stick with Wireguard and see how it goes.