In a VMware Workstation Pro 17 environment, virtual machines (VMs) configured with multiple monitors experience a sudden reversion to a single-display layout.
vmware.log file contains the following RPC command at the time of the reset: vmx ToolsSetDisplayTopology: Sending rpcMsg = DisplayTopology_Set 1 , 0 0 1920 1080VMware Workstation Pro 17
The issue is caused by inter-process interference between the Symantec Endpoint Protection (SEP) update process and the VMware Tools display topology service.
When a SEP LiveUpdate session completes and new virus definitions are loaded, it triggers a system-level event (such as a Group Policy refresh or a momentary filter driver interruption). This causes VMware Tools to incorrectly re-evaluate the display topology and default to a single-monitor configuration (DisplayTopology_Set 1).
To resolve this interference and stabilize the multi-monitor display, implement one or more of the following solutions:
Update the SEP client on the Host OS to version 14.3 RU10 or later. This version has been verified to coexist with VMware Workstation without triggering topology resets.
If an upgrade is not immediately possible, configure the SEP policy on the Host OS to exclude the following VMware Tools executables from real-time scanning and behavior monitoring:
C:\Program Files\VMware\VMware Tools\VMwareResolutionSet.exeC:\Program Files\VMware\VMware Tools\vmtoolsd.exe .vmxvramSize of at least 128MB is recommended for multi-monitor setups.Additional KB Unable to use multiple monitors with VMware Remote Console (VMRC)