Merge "CDD: Require support for hardware-backed key attestation" into oc-dev