The document is well written and describes the DNSSEC extensions for DNS. It points to all relevant RFCs to help with the implementation and deployment of DNSSEC. I found no major or minor issues and I do think the draft is ready for publication.