Updated with updates to sudoers for the indicated user which should be apigee.
diff --git a/defaults/main.yml b/defaults/main.yml
index 2130c9a..e9b3d45 100644
--- a/defaults/main.yml
+++ b/defaults/main.yml
@@ -1,3 +1,4 @@
 ---
 # defaults file for /usr/local/google/home/friasc/apigee-workspace/apigee-opdk-role-workspace/apigee-opdk-admin-user
 pubkey: '~/.ssh/id_rsa.pub'
+permit_root_login: False
\ No newline at end of file
diff --git a/tasks/main.yml b/tasks/main.yml
index eb03b98..f418b8a 100644
--- a/tasks/main.yml
+++ b/tasks/main.yml
@@ -20,6 +20,6 @@
     regexp: '(^#)(PermitRootLogin yes)'
     line: '\2'
     backrefs: yes
-  when: permit_root_login | default(yes)
+  when: permit_root_login | default(False)
   notify:
   - Restart SSH service