I do have almost same setup, not with oauth2 but basic session based. RolesAllowed annotation simple does not work for me. Any guesses ?