I only see a drawback of using the same vlan, how do you know who to trust? where's your trust demarc? how do you prevent one of your user from marking it's computer traffic with EF by using a malicious application?
By default the computer will not mark the traffic, but a evil user will be able to mark it with the use of customer tools, most of the time this will not be a problem, but you better be aware it could happen.