I’m glad you got it sorted.
There is some information here that may help if you haven’t seen it already:
http://bobsguides.com/revolution-permissions.html
The need for that web access ACL entry for non-admin users is kind of an anomaly since the web context is normally the front end. It threw me at first too. It’s necessary because without it, the user has no access to that context at all (since it’s protected by the Admin ACL entry for the web context) and therefore won’t see any of its resources.
Each of the standard policies is only appropriate for certain kinds of ACL entries:
Context Access ACL entries ==> Administrator policy
Resource Group Access ACL entries ==> Resource policy
Element Category Access ACL entries ==> Element policy
In the current version of MODx, you’ll only see the ones that are appropriate when you create an ACL entry.
Both of the default Administrator group Context Access ACL entries (for web and mgr) should have a policy of Administrator.
If the admin has a policy of resource, it’s almost certainly in a Resource Group Access ACL entry that you created. If it’s in a Context Access ACL entry, it’s most likely one that you created or edited with an earlier version of MODx where all policies showed up for all ACL entries.