I\'m currently developing a menu for my application that should be able to display only the controllers that the current user can access (requestmap defined in the database).
You have to configure the file config/SecurityConfig.groovy (if it does not exists, create it, this overrides the default Security Configuration)
Add this entry:
requestMapString = """\
This is means that you have to log in to enter the site. But all the resources (css, js, images, etc) is accessed without authentification.
If you want specific role only enter specific controller: For example, for UserController:
For more information: http://www.grails.org/AcegiSecurity+Plugin+-+Securing+URLs