AS of now, when running RA VPN on FTD, there is no difference between AnyConnect Plus, Apex or VPN-Only. You can buy any of these license and get same result.
I think your running ASA w/FirePOWER service.
For IPS, AMP, URL you need to apply license through FMC and assign the license to the FirePOWER.
For AnyConnect through ASA CLI with Activate-key CLI. backup old key before doing any changes.
htt...
Since its One-to-One NAT why do you use Dynamic ?
object network PARTNER-NETOBJhost 10.175.4.10nat (PARTNER,outside) dynamic AAA.AAA.AAA.AAA
Change to
object network PARTNER-NETOBJhost 10.175.4.10nat (PARTNER,outside) static AAA.AAA.AAA.AAA