i get Value in stanza [eventtype=snort3:alert:json] in /opt/splunk/etc/apps/TA_Snort3_json/default/tags.conf, line 1 not URL encoded: eventtype = snort3:alert:json
my tags.conf contains
[eventtype=snort3:alert:json]
ids = enabled
attack = enabled
Any help appreciated im at a loss