CEH v8 Classroom Setup Guide
Setting up the CEH v8 classroom environment isn't complicated, but there are enough moving parts that people consistently hit snags. I've walked through this setup more times than I care to count, usually at 2 AM when something breaks and the instructor isn't available. You need a dedicated machine or a properly allocated VM before anything else. The lab exercises in v8 expect a minimum of 8GB RAM and 40GB of free disk space. Anything less and you'll be watching VirtualBox choke during the Kali Linux installation. I recommend 16GB if you plan to run multiple VMs simultaneously, because we usually have the target machine and the attacker machine running at the same time. The host operating system should be Windows 10/11 Pro, macOS, or a stable Linux distro. Home editions of Windows can work but you'll run into virtualization restrictions without enabling Hyper-V manually, and that sometimes conflicts with VirtualBox.
Installing the Base Environment
Download VirtualBox from oracle.com first. Version 7.0 works fine. Then grab the Kali Linux OVA from the CEH v8 media pack that comes with your course. Don't bother downloading a fresh Kali ISO unless the OVA is corrupt, because the pre-configured one already has most of the tools the curriculum expects to be there. Import the OVA into VirtualBox. Go to File then Import Appliance, point it at the .ova file, and let it unpack. This takes about ten minutes on a decent drive. Once it's imported, open the settings and allocate at least 2 CPU cores and 4GB RAM to the VM. The default allocation is too low for the heavier exercises.
Network Configuration
This is where most people fail. The CEH v8 labs depend on a specific network topology. You need two network adapters on your Kali VM. Adapter 1 should be in NAT mode for internet access. Adapter 2 needs to be set to Host-Only or Internal Network, depending on whether your target VMs need internet or not. For the target machines, most labs use Windows XP SP3 or Metasploitable. Both should sit on the same internal network segment as the second adapter on Kali. That way Kali can reach them without any routing complexity. If you skip this step and try to bridge everything, you'll spend hours troubleshooting why pings work one moment and fail the next.
Get the Full Details

Configuring the Lab Manual
Extract the CEH v8 course PDF and lab manual to your hard drive. The exercises reference specific IP addresses that you need to assign statically in your target VMs. I found thatDHCP causes more problems than it solves in this setup, because the targets keep changing IPs between sessions and the lab instructions become useless. Set your Kali IP to 192.168.56.101 /24, your Windows target to 192.168.56.102 /24, and Metasploitable to 192.168.56.103 /24. That's the range the lab manual assumes for almost every exercise.
A Specific Problem I Encountered
One thing that drove me crazy was Nmap producing inconsistent results when scanning the target VMs. The scans would work the first time but then hang indefinitely on subsequent attempts. The issue was that the Windows target had its firewall partially configured from a previous lab session. Some ports were open, some were filtered, and Nmap couldn't tell the difference cleanly. The workaround was straightforward: boot the Windows target, open a command prompt, and run netsh advfirewall set allprofiles state off. Then flush the ruleset with netsh advfirewall reset. Do the same for Metasploitable if it has iptables active. After that, Nmap behaved exactly as the lab manual described. This saved me probably three hours across two different lab days.
Snapshot Strategy
Take snapshots after every successful lab exercise. This isn't optional if you're doing this on a real classroom schedule. When something goes wrong in a later lab and you need to backtrack to a working state, you will not want to reconfigure everything from scratch. Name your snapshots clearly. "After Port Scanning Lab" is infinitely better than "snapshot 1". The CEH v8 materials are dated. Some of the exploits and tools referenced don't work the same way they did when the course was published. The Social-Engineer Toolkit has significant changes from the version included in that era's Kali. The BOINC-based attack examples in the malware section are largely irrelevant now. Don't expect everything in the lab manual to execute perfectly on a modern toolset. Spend extra time on the concepts rather than treating every command as gospel. If you're looking for a more current hands-on experience, the eLearnSecurity pEntest labs or the TCM Security Practical Ethical Hacker course have environments that are actively maintained and reflect what you'd actually encounter today.

Download Links
The VirtualBox installation package is at oracle.com/virtualbox/downloads. The Kali Linux OVA should come with your EC-Council course materials. If you need to source it separately, it's available through the EC-Council student portal using your login credentials. The Metasploitable 2 OVA can be downloaded from fastandeasyhacking.com, and the Windows XP SP3 ISO is widely available through Microsoft's old download archives if your course didn't include one.