Hello,
"As far as the trusty OS is concerned, NXP does not have hardware-backed Keystore implemented.
Thus currently the Software Keystore implementation by google can only be used.
However, Linaro has an implementation of the master key for android here
https://github.com/OP-TEE/optee_os/tree/kmgk_pta_3.3.0
The safer approach for a pure android customer would be to go with trusty.
If one wants both a Linux and Android solution and want to keep compatibility between the 2, then it may
need to investigate optee."
Regards,
Yuri.