we remove not only support for *building* a ca derivation, but also support for *resolving* ca derivations as part of a build. we never have to resolve derivations from here on, so this code is now dead. Change-Id: I0346442d5fa00eb927177545ae61315f588477cc