This commit adds code so that resealKeyToModeenv() will read the sealed-keys file and use either "tpm" or "fde-setup-hook" for resealing. This also unbreaks master because this no longer runs HasFDESetupHook during seeding.