if it is feasible for the systems team to exclude the Honeypots from its actions (scanning/probing) that would make the most sense.
However if it is not possible/practical for them to exclude the Honeypots, crafting an exception rule for the source ip of the machine against the Migrated Honeypot rule (you can’t build exceptions for the legacy UBA rule) wouldn’t be too difficult