You can allow role to access some action on resource by:
$acl->allow('Administrator', 'products', 'create');
You can deny role to access some action on resource by:
$acl->deny('Customer', 'categories', 'create');
You can check if role is allowed to some action on resource by using:
$a...