As the 13 root zones are now offering dnssec I thought it would be nice on how to make bind actually the dnssec entries and how to sign one's own domains for it.