SHA-1 is considered to a weak message digest, so change it to disabled by default.
https://review.trustedfirmware.org/c/trusted-firmware-m/+/3289