Is it preferable to have a dedicated switch for the DMZ, that is, connect a dedicated switch to the DMZ interface of the firewall. Or the second option, tag DMZ ports on the core switches (internal network)? In that case the DMZ interface of the fire...