1State Key Laboratory of Advanced Optical Communication Systems and Networks, Center for Quantum Sensing and Information Processing, School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai 200240, China
2Shanghai Research Center for Quantum Sciences, Shanghai 201315, China
3Hefei National Laboratory, Hefei 230088, China
4College of Information Science and Technology, Donghua University, Shanghai 201620, China
The conventional Gaussian-modulated coherent-state quantum key distribution (QKD) protocol requires the sender to perform active modulations based on a true random number generator. Compared with it, the passive-state-preparation (PSP) continuous-variable quantum key distribution (CVQKD) equivalently performs modulations passively by exploring the intrinsic field fluctuations of a thermal source, which offers the prospect of chip integration QKD with low cost. In this paper, we propose and experimentally demonstrate a high-rate PSP-CVQKD scheme within an access-network area using high-bandwidth detectors in a continuous wave encoding and decoding way. By proposing effective methods for suppressing the noises during the PSP process and polarization multiplexing to decrease the photon leakage noises, we realize the high-intensity local oscillator transmission, thereby achieving coherent detection with high efficiency, low noise, and high bandwidth. The secure key rates over transmission distance of 5.005 km with and without consideration of the finite-size effect are 273.25 Mbps and 1.09 Gbps. The use of the PSP method boosts the asymptotic secret key rate of CVQKD to Gbps level for the first time, to our knowledge, within the range of the access network, which provides an effective and secure key distribution strategy for high-speed quantum cryptography access communication.
【AIGC One Sentence Reading】:We demonstrate a high-rate passive-state-preparation continuous-variable quantum key distribution scheme, achieving Gbps secure key rates within an access network area, offering a secure and efficient solution for high-speed quantum communication.
【AIGC Short Abstract】:This study introduces a high-rate passive-state-preparation continuous-variable quantum key distribution scheme, achieving Gbps secure key rates within an access network area. By suppressing noises and using polarization multiplexing, the method enables efficient, low-noise, high-bandwidth coherent detection, boosting the asymptotic secret key rate of CVQKD and providing a fast, secure communication strategy.
Note: This section is automatically generated by AI . The website and platform operators shall not be liable for any commercial or legal consequences arising from your use of AI generated content on this website. Please be aware of this.
1. INTRODUCTION
Quantum key distribution (QKD) [1–4] provides an efficient way for two legitimate remote users (Alice and Bob) to implement secure communications over untrusted quantum channels. Various protocols in quantum mechanics are invented to further guarantee the generated secure key against adversaries (Eve) [5]. Until now, QKD can be mainly divided into two families based on encoding and decoding schemes: discrete-variable QKD (DVQKD) and continuous-variable QKD (CVQKD). With the advantages of high key rate and compatibility of classical optical communication systems [6–8], CV-QKD based on coherent detection over an access network has attracted much attention [9,10]. The access network connects multiple endpoints to a common network node, with transmission distances ranging from a few hundred meters to several kilometers. These relatively low-loss transmission scenarios are well compatible with the characteristic of the high channel capacity of CVQKD [9,11,12]. However, high-speed secure access networks require ultra-high downstream rates, typically exceeding 1 Gbps. Therefore, the development of high-rate quantum key distribution is of great importance for its practical application [13,14].
Among many active CVQKD protocols, the Gaussian modulated coherent-state (GMCS) protocol is one of the most popular schemes, which has been experimentally demonstrated in both laboratory and field environments [15–19]. However, high-speed modulation with a high extinction ratio and stability in realistic conditions is challenging, which potentially limits the secret key rate (SKR). The reported GMCS-CVQKD systems fail to satisfy the high-speed access networks [20,21]. To improve the performance and ease of operation of CVQKD, another practical active CVQKD protocol based on a discrete modulation coherent state (DMCS) is proposed [22], which has recently made significant progress in terms of SKR [23,24]. Unfortunately, for the quantum secured gigabit optical access network, the currently accessible secure key rate is still insufficient. Besides, the high-speed modulators and true random number generator (TRNG) are always needed in active CVQKD schemes, inducing significant cost, manufacturing time, and complexity.
To overcome the shortcomings of active CVQKD protocols, the PSP-CVQKD schemes based on a thermal source are proposed [25,26], which eliminates the need of TRNG and active amplitude and phase modulators. Under the assumption that the transmitter on Alice’s side is within a trusted location, it is impossible for Eve to distinguish between PSP-CVQKD and active-state-preparation (ASP) GMCS-CVQKD protocols [26]. In particular, from Eve’s point of view, Alice’s output quantum state is a mixture of all possible coherent states, which can be seen as a thermal state with an average photon number , where represents Alice’s modulation variance. Therefore, the security proof for ASP-GMCS-QKD can be directly used to demonstrate the security of the PSP scheme. In the PSP-CVQKD scheme, the TRNG and active amplitude and phase modulators are replaced by a thermal source, beam splitters, optical attenuators, and homodyne detectors, which offers the prospect of the chip-scale high-rate CVQKD systems with low cost on optical fiber and free space. Recently, the intact PSP-CVQKD was experimentally conducted by transmitting a local oscillator (LO) over fiber and an atmosphere channel [27,28]. However, limited by the low bandwidth of the homodyne detector, which is equivalent to the repetition frequency of traditional ASP-CVQKD schemes, the SKR is not outstanding compared to other CVQKD schemes. More deeply, high-bandwidth detectors require a higher intensity of LO, which may introduce more photon-leakage noise, thereby restraining the increase of SKR. Furthermore, the unique excess noise caused by passive state preparation also extremely leads to the deterioration of SKR.
Sign up for Photonics Research TOC Get the latest issue of Advanced Photonics delivered right to you!Sign up now
In this paper, we experimentally realize a high-rate transmitted LO PSP-CVQKD system within an access-network area by an off-the-shelf ASE source. In particular, with the help of high-bandwidth detectors and high-speed data sampling, the PSP-CVQKD can be equivalent to the ASP-CVQKD scheme after high-speed modulation. And to decrease the subsequent deterioration of photon-leakage noise caused by enhanced LO, a polarization beam splitter (PBS) with a high extinction ratio and a polarization monitoring technique are utilized in polarization multiplexing. Meanwhile, the excess noise generated in the passive state preparation, which is one of the most important bottleneck problems for implementing high-rate PSP-CVQKD, is greatly suppressed by increasing the attenuation on the transmitted signal. And by adjusting the output of the thermal source on Alice’s side, we optimize the equivalent modulation variance to maximize the SKR. Based on the above key technological breakthroughs, the asymptotic and non-asymptotic SKRs of the demonstrated PSP-CVQKD scheme within an access-network area reach 1.09 Gbps and 273.25 Mbps, respectively, which fulfills the Gbps key generation rate within an access-network area. Therefore, the investigated transmitted LO PSP-CVQKD scheme has the application potential for a high-speed secure access network and could be a favorable candidate for short-reach secret communication.
2. EXPERIMENTAL RESULTS AND DISCUSSION
A. Protocol and Setup
The experimental schematic of the transmitted LO PSP-CVQKD scheme is depicted in Fig. 1. First, instead of actively preparing a coherent state, Alice splits the output of a thermal source into two spatial modes. One is locally measured by using heterodyne detection (here denotes the local loss in Alice’s signal channel) to obtain the values of quadratures and , which are the quantum random numbers from the intrinsic field fluctuations of a thermal source (see Appendix A). The other mode is attenuated with and then sent to Bob with the LO through PBS and an optical fiber channel based on the polarization multiplexing technology. Second, after the signal and LO are decoupled by the PBS, Bob performs heterodyne detection on the incoming quantum states transmitted from Alice to generate received quadratures and . A 99:1 BS is deployed before the 90° OH to monitor the polarization leakage. Third, after frame synchronization and phase compensation, Alice and Bob perform parameter estimation. Finally, a string of secure secret keys is generated by reconciliation and privacy amplification.
Figure 1.Experimental schematic of transmitted LO PSP-CVQKD scheme. and , balanced beam splitters; , 99:1 beam splitter; Att, optical attenuator; PBS, polarizing beam splitter; 90° OH, 90° optical hybrid; HD, homodyne detector; Pwr., power meter; T, optical fiber channel transmittance; {, }, vacuum noises from corresponding devices.
The secret key rate can be calculated as [29] (see Appendix A) where is the repetition rate, FER is the frame error rate of the reconciliation, and represent the block length for final key distillation and the entire sampling length, respectively, is the overhead for frame synchronization and phase compensation, is the reconciliation efficiency, denotes the Shannon mutual information between Alice and Bob, is an offset term due to privacy amplification in the finite-size regime, and is the Holevo bound between Eve and Bob. In the PSP-CVQKD scheme, the repetition rate is dependent on the minimum value of the bandwidth of the homodyne detectors and sampling frequency, which is an advantage of PSP-CVQKD compared to ASP-GMCS-CVQKD. Therefore, to achieve maximum SKR, coherent detection with a high bandwidth and high-speed data sampling are utilized in the experiment. Besides, to achieve maximum SKR, the overall excess noise must be effectively suppressed, which determines and .
Figure 2.Experimental setup of the high-rate PSP-CVQKD scheme using a thermal source. The red and blue lines represent the polarization-maintaining and single-mode fibers, respectively. ASE, amplified spontaneous emission; EDFA, Er-doped fiber amplifier; BPF, band-pass filter; POL, polarizer; PC, polarization controller; BS, beam splitter; LO, NTK laser source; VOA, variable optical attenuator; Hyb, 90° hybrid; Hom, homodyne detector; Pwr. Meter, power meter; OSC, oscilloscope.
For any high-rate CVQKD system, the low excess noise is always required. Compared with ASP-CVQKD, PSP-CVQKD can prepare the quantum states without active modulation by using amplitude and phase modulators, and TRNG. However, the passive state preparation will lead to a unique excess noise, which greatly deteriorates the overall excess noise and decreases the SKR. In the transmitted LO PSP-CVQKD scheme, the complete excess noise model could be constructed as follows [28]: where represent the excess noises caused by passive state preparation, photon leakage, phase drift, channel instability, and out-of-band light’s mismatching, respectively. Among them, is so small that it can be ignored. , which depends on the environment, is uncontrollable. Therefore, in order to increase the SKR, the must be effectively decreased. The originates from the quantum-state-preparation step in PSP-CVQKD (see Appendix A), which can be calculated by where is the equivalent modulation variance of the mode sent to Bob, which can be adjusted to the desired value and pre-measured before each experiment, represents the attenuation factor of the attenuator, is the average photon number of the thermal source, is the transmittance of the SMF spool, and and are the quantum efficiency and variance of the electrical noise of Alice’s homodyne detectors, respectively. Therefore, Alice can reduce the by adjusting the transmittance of the attenuator to a certain extent. Here is classified as untrusted excess noise as other components, but it can be evaluated before the parameter estimation process.
Notably, to optimize the equivalent modulation variance, the average photons of a thermal source need to be increased together with attenuation. In our experiment, unlike previous PSP-CVQKD schemes, we set a quite high attenuation on the transmitted signal to extremely suppress the excess noise during the PSP step. However, this leads to a significant power difference between the signal and LO, which may increase the photon leakage noise . And to achieve coherent detection with high efficiency, low noise, and high bandwidth, the high-intensity LO is required, which explains why the LO cannot be attenuated. Fortunately, the thermal polarization multiplexing transmission LO technology with high isolation can make up for this shortcoming. By utilizing the multifunction polarization controller (MPC-201), the practical isolation is much higher than the finite polarization isolation of the polarization beam splitter (PBS). The leaked photons per second are distributed at each sampling point, thereby further decreasing the photon leakage noise. To remove the practical security loopholes induced by transmitted LO, a simple counter-measure is employed here to monitor the fluctuation of LO. Moreover, we can develop a local LO PSP-CVQKD scheme [30] to completely eliminate the practical security vulnerabilities and photon leakage noise induced by transmission of LO. And to further suppress the excess noise due to phase drift through the lossy and noisy channel, a fine-grained phase compensation algorithm [28] is employed to improve it (see Appendix A).
The measured minimum overall noise varying with the attenuation is shown in Fig. 3. At first, constitutes a high proportion and reduces with the attenuation, resulting in a decrease in overall excess noise. As the attenuation continues to increase, the residual excess noise including is the main part of excess noise; the photon leakage increases due to the power difference between the signal and LO, thereby deteriorating the overall excess noise. Despite the absence of strict monotony for the experimental results, a concave function with a minimum value can be used to fit the variation. The fitted curve is based on a polynomial function and fortunately indicates there exits an appropriate attenuation that minimizes the overall excess noise. Notably, the signal cannot be infinitely attenuated to maintain the correlation between Alice’s and Bob’s data.
Figure 3.The excess noise minimum measurement results at attenuation from to . The blue dots represent the overall excess noise. The orange dots represent excess noise due to passive state preparation . The green dots represent the residual noise except . The red and blue dashed lines are the approximate curves that fit well.
The experimental excess noise measured with 25 raw data blocks of length for a distance of 5.005 km is shown in Fig. 4. Due to the instability of polarization leakage and phase drift, a worst-case estimator of excess noise compatible with the experimental data is also provided for each data point. The channel input has an average experimental excess noise of 0.047 and a worst-case excess noise estimator value of 0.098. Besides, for the high-speed PSP-CVQKD system, we confirm the upper bound of the excess noise at 5.005 km allowing for generating a secret key. It should be mentioned here that precise frame synchronization is necessary for Alice and Bob to evaluate the excess noise and generate a final key, especially for the high-rate CVQKD scheme. This explains why the same 5.005-km SMF spool is added in Alice’s thermal light transmission channel, despite the slight increase in excess noise. When Alice and Bob use independent data sampling modules and calibrate the transmission delay, the SMF spool can be eliminated.
Figure 4.Experimental excess noise measured with optimal parameter. The lower blue circle points are measured at 5.005 km with finite-size blocks. The orange square points represent the excess noise under the worst-case estimator. The red solid line represents the upper bound of the excess noise at 5.005 km. The blue and red dashed lines represent the average experimental excess noise and the average of worst-case excess noise estimator, respectively.
To maximize the SKR, the homodyne detectors of 23 GHz are utilized in the high-rate PSP-CVQKD scheme, which increases the repetition rate (), as mentioned in Eq. (1). However, limited by the sampling clock frequency of the oscilloscope, for the homodyne detectors of 23-GHz sampling rate, we can perform up-sampling (40 GHz) or down-sampling (20 GHz). In the high-rate PSP-CVQKD experiment, when the sampling clock frequency is lower than the signal frequency, the displayed waveform may not be the actual frequency and amplitude. Interpolation calculation is utilized in the oscilloscope, which may lead to severe data distortion. Therefore, we perform up-sampling of the raw data with a 40-GHz rate. Notably, for the practical high-rate CVQKD system, a sampling module with the same sampling frequency as the detector may be required. Although we perform up-sampling of the raw data with a 40-GHz rate, the equivalent repetition rate for the CW-mode communication in our experiment is still 23 GHz. Here highly efficient post-processing is needed to distill a secure secret key. Fortunately, for the low-loss quantum channel, there are effective reconciliation algorithms that are sufficient to achieve reconciliation efficiencies above 96% over a wide range of SNR (see Appendix A). Although the real-time post-processing is not implemented in the experiment, it can be achieved through multiple GPUs theoretically. The experimental secret key generation results based on Eq. (1) are shown in Fig. 5. In the high-rate PSP-CVQKD system, the SKR over transmission distances of 5.005 km can reach 1.09 Gbps. When the finite-size effects are taken into account, the SKR is 273.25 Mbps (see Appendix A). The simulated secret key rates based on a larger data block is also depicted. The larger data block can reduce the finite-size effects, thus improving the secret key rate and transmission distance. Moreover, we can also utilize the EDFA multi-stage amplification to increase the signal power to the optimized value, thereby increasing the transmission distance.
Figure 5.Experimental key rates and numerical simulations. The blue and purple solid curves depict the simulated secret key rates calculated from the estimated parameters in experiment. The dashed curves show the theoretical secret key rates when considering finite-size effects with different data blocks. The red dotted curve represents the PLOB bound. The green and blue square points correspond to the experimental results at transmission distance of 5.005 km. The lower triangle point, diamond point, and upper triangle point represent the results of Refs. [20,23,24], respectively.
To conclude, we experimentally investigate a high-rate transmitted LO continuous-variable quantum key distribution system through optical fiber. In particular, we implement the passive state preparation with an equivalent perfect thermal source, which eliminates the need of TRNG and active amplitude and phase modulators. And by synthetically suppressing the excess noise induced in the whole communication including the passive-state-preparation stage, we realize the coherent detection with high efficiency, low noise, and high bandwidth. With the high-speed data sampling and effective post-processing technique, the secure key rate over transmission distances of 5.005 km can reach 1.09 Gbps, which allows the Gbps high-speed one-time-pad quantum cryptography communication within an access-network area. The demonstrated transmitted LO PSP-CVQKD scheme could be a favorable candidate to implement high-speed, chip-based, and even sunlight-based CVQKD with less cost and complexity.
APPENDIX AGaussian Performance Test
The distributions and autocorrelation of the measurement results to evaluate the true randomness from an equivalent perfect thermal source should be discussed. The histogram of the raw data of samples together with a Gaussian fit curve is shown in Fig. 6. The raw data fit the Gaussian distribution well and the deviations from a perfect Gaussian distribution can be attributed to the limited accuracy of the acquisition module. The autocorrelation of the collected data of samples is shown in Fig. 7. The correlation coefficients of lag greater than zero are almost below and can further decrease with more data samples, which verifies the true randomness from an equivalent perfect thermal source [31].
Figure 6.Histogram of the measurement results and a Gaussian fit curve. Sample size, .
Owing to the high proportion of in the overall system excess noise, Alice can reduce its value by decreasing and optimizing the modulation variance. It should be mentioned here that is essentially classified as the untrusted noise, but it can be calibrated before parameter estimation. So, the finite-size effects on this component can be excluded.
Phase Compensation
Due to the fluctuation of the transmission path length in a practical fiber link, phase shifts in an unstable transmittance channel hinder the extraction of secret keys. Phase compensation aims to align the phase reference coordinates of Alice and Bob, while minimizing the impact of phase drift (). Therefore, a fine-grained phase compensation algorithm is utilized in the experiment. The specific operation includes the following steps: step 1, perform frame synchronization with the method in Ref. [34]; step 2, disclose a part of Alice’s data (, ) and the corresponding Bob’s data (, ); step 3, set the compensating phase drift estimator and evaluate the cross-correlation value of the Alice and Bob components based on the above data; the cross-correlation can be calculated as where represents the preset phase rotation of Alice’s data; step 4, traverse compensate phase from 0 to 2 to determine the maximum cross-correlation value of Alice and Bob with a grain size, which is the optimal phase drift estimator; step 5, repeat the compensation process for several rounds until the compensation is completed or the number of repetitions reaches a threshold. Use the best estimator to compensate for Alice’s undisclosed data. The compensated data are then used for final key distillation.
Post-Processing
In the high-rate PSP-CVQKD experiment, the reconciliation efficiency and reconciliation error probability can reach 0.96 and 0.4, respectively. We use the following reconciliation algorithms [35], which can both satisfy the requirements.
Construction Method of SC-LDPC Codes for Information Reconciliation
The structure of the spatially coupled (SC) low-density parity-check (LDPC) code can be regarded as a special case of the protograph-based LDPC code. It links multiple unrelated subprotographs into a coupling link through spatial coupling, which results in a flexible construction structure for the SC-LDPC code. The detailed construction steps of the SC-LDPC code based on the Advanced Television Systems Committee (ATSC) LDPC code are described as follows.
Step 1: for a given parity-check matrix of ATSC LDPC code, is first calculated, where represents the greatest common divisor function; and denote the number of rows and columns in the parity-check matrix, respectively.
Step 2: the cutting line is determined by alternately moving entries to the right and then entries down. Subsequently, the parity-check matrix is cut into upper and lower parts along the cutting line. After obtaining the upper and lower parts, a new parity-check matrix is constructed by re-splicing two parts. The new parity-check matrix is duplicated along the diagonal until the parity-check matrix of desired code length is generated.
Construction Method of QC-LDPC Codes for Information Reconciliation
The parity-check matrix of the quasi-cyclic (QC) LDPC code is composed of the zero matrices and the cyclic permutation matrices (CPMs). All submatrices are square matrices of the lifting size . Therefore, the QC-LDPC code is easy to implement by hardware and has low encoding/decoding complexity. Generally, the CPMs are matrices that shift the positions of 1 in the identity matrices to the right by times, where is the number of cyclic shifts. For example, if , the CPM can be expressed as
The structure of the parity-check matrix in ATSC LDPC code can be regarded as the special case of the base matrix for QC-LDPC code. QC-LDPC code is constructed by replacing 0 and 1 in the base matrix of the ATSC LDPC code with zero matrices and corresponding CPMs, respectively. The size of each submatrix is . Furthermore, the is set to a random number from 0 to . For a given parity-check matrix of ATSC LDPC code, the structure of QC-LDPC code can expand the base matrix of size to a size of . According to the cycle free features, the girths of the constructed QC-LDPC codes are no less than those of the original LDPC codes.
Detailed Results of the High-Rate PSP-CVQKD Experiment
The detailed results of the high-rate PSP-CVQKD experiment test are shown in Table 2.
Detailed Results of the High-Rate PSP-CVQKD Experiment Testa
No.
SNR
(Mbps)
(Mbps)
1
0.8563
0.0528
0.3827
205.833
942.518
2
0.9086
0.0469
0.3240
262.451
1009.943
3
0.8961
0.0491
0.3266
231.052
960.543
4
0.8576
0.0522
0.3855
209.757
948.310
5
0.8988
0.0486
0.3331
259.770
974.621
6
0.8433
0.0539
0.4120
200.511
933.771
7
0.9098
0.0442
0.3119
270.443
1062.129
8
0.9105
0.0431
0.3132
273.257
1090.155
9
0.8359
0.0566
0.4257
195.037
910.232
10
0.8568
0.0526
0.3644
207.652
946.144
11
0.8521
0.0531
0.3834
204.556
935.477
12
0.9096
0.0445
0.3300
266.597
1051.363
13
0.9011
0.0473
0.3297
261.658
988.329
14
0.8677
0.0515
0.3761
217.735
952.166
15
0.8771
0.0503
0.3655
220.944
955.506
16
0.8883
0.0499
0.3741
227.501
958.843
17
0.8977
0.0489
0.3863
245.193
967.133
18
0.9101
0.0437
0.3254
271.411
1065.677
19
0.9089
0.0461
0.3221
264.550
1021.334
20
0.9088
0.0466
0.3401
263.994
1011.033
SNR: practical signal-to-noise ratio. : excess noise. : average measured electronic noise of Bob’s heterodyne detector in shot noise units. (Mbps): final secret key rate in finite-size regime. (Mbps): final secret key rate in asymptotic limits.