tpm2: add tlcl_force_clear and use it before factory init

tlcl_force_clear() needs to be issued each time when the device mode
switches between normal/development/recovery.

This patch adds command implementation using TPM_Clear TPM2 command,
and also invokes it before factory initialization.

TEST=verified that TPM_Clear command succeeds at factory startup and
     the boot proceeds normally.

