In the AWS Cloud: * An Application Load Balancer for the Consul UI. * An Amazon Certificate Manager (ACM) certificate for the Consul UI. In Kubernetes: * A dedicated node group for {partner-product-short-name}. * A namespace for {partner-product-short-name}. * An Internal {partner-product-short-name} TLS certificate and certificate authority for end-to-end TLS. * A federation secret to allow other Consul clusters to integrate with this one via mesh gateway. * A gossip secret for trusted communication between Consul servers. * For the {partner-product-short-name} service: ** {partner-product-short-name} server pods. ** {partner-product-short-name} mesh-gateway service. ** {partner-product-short-name} DNS service. ** {partner-product-short-name} UI service. ** Ingress controller for the {partner-product-short-name} UI.