This is a typical example where best practices would suggest placing the file share witness in a third location, such as in Azure. You could go by using only one DC, which I have done several times for testing purposes. But it is not recommended as this will result in an unnecessary elevation of privileges.
https://learn.microsoft.com/en-us/exchange/high-availability/manage-ha/azure-vms-as-dag-witness-servers?view=exchserver-2019
https://practical365.com/exchange-server/domain-controller-azure-file-share-witness-database-availability-group/