Merge changes I5b5018d4,I688fff83,Ib99d689d into sc-dev

* changes:
  On-device signing: Remove Keymaster implementation.
  On-device signing: verify the public key.
  On-device signing: Switch to using a TEE-backed keystore key.