I wouldn't do it. It will significantly affect the performance of your cluster so your monitoring ends up killing the very thing it's monitoring.
Perhaps you could tell us what outcome you're after so we'd be able to offer a better solution. Like audit logging, for example. Cheers! >