Try this, Go to configuration > Entity Management select the Entity Types which you want to configure, click on edit. Under the splunk dashboard drop-down, choose the dashboard which you want to drill down to and under Entity Parameter, click on add entity filter, select your entity field and pass the token as form.” Your token-name” Save this and give a try
... View more