Abstract
Quantum cryptography is set to become a key technology for future secure communications. However, to get maximum benefit in communication networks, transmission links will need to be shared among several quantum keys for several independent users. Such links will enable switching in quantum network nodes of the quantum keys to their respective destinations. In this paper we present an experimental demonstration of a photonic integrated silicon chip quantum key distribution protocols based on space division multiplexing (SDM), through multicore fiber technology. Parallel and independent quantum keys are obtained, which are useful in cryptosystems and future quantum network.
Introduction
In contemporary society, communication security has become increasingly important. The security of the current cryptosystems, based on mathematical assumptions, are not guaranteed when quantum computers become available. Quantum machines have already made indications that the current crypto codes can be easily eavesdropped^{1}. This has spurred investigations into new security technologies based on quantum physics. In order to exchange secure information between users, Quantum key Distribution (QKD), a branch of Quantum Communications (QCs), provides good prospects for ultimate security based on the laws of quantum mechanics^{2,3,4,6,7,8}. In the last 30 years both freespace and fiber based QKD experiments, have demonstrated the exploitation of different physical principles. Furthermore, some cryptography companies are producing commercial devices that allow quantum security on a specific fiber link. However, most QKD systems are based on a pointtopoint link, where the transmitter (Alice), and the receiver (Bob), generate a quantum key between two specific parties. In a future scenario, where QCs become standard technology, and where infrastructures, like banks and government buildings, will be connected through a quantum network, new principles in terms of key generation are required. The concept of a QKD network where customers need parallel independent keys, connecting multiple endusers and different nodes, will be highly useful. Here we describe a possible scenario for a quantum metropolitan/local area network (QMAN/QLAN), based on space division multiplexing (SDM) technique through a multicore fiber device. Singular properties of quantum physics, like entangled photons, can be exploited for quantum teleportation and entanglement swapping protocols, with the purpose of key generation in a point to multipoint network^{9}. These networks, despite being very attractive from a security point of view, are problematic in terms of system requirements. Indeed, high rate entanglement sources, stable environments and a very low noise photondetector are crucial for creating long distance links. Alternatively, in the case of highcapacity demand, other principles can be adopted. Weak coherent pulses (WCP), using an attenuated laser with a mean number photon per pulse lower than one, is the most implemented technique being used in present days QKD systems. In these cases, several network schemes have been implemented and demonstrated. Usually, an active optical switch, is required in a point to multipoint implementation. Various switching dimension can be explored: wavelength division multiplexing (WDM), code division multiplexing (CDMA) and time division multiplexing (TDM) are useful for implementation^{10,11,12,13,14,15,16}. However, all of these methods require extra devices on the line that introduces additional losses and crosstalk, which can compromise the final security. Seen from this perspective, the possibility of using new lowcross talk technologies like multicore fibers (MCFs), well known in classical optical communications, is very promising. A recent work already demonstrated how a multicore fiber may be used in a communication link, to increase the secret key rate^{17}. Moreover, MCFs permit simultaneous transmission of classical and quantum channels with a very good signaltonoise ratio (SNR) and isolation between cores, guaranteeing greater stability and robustness of the system, as well as allowing for strictly independent channels transmitted through the same fiber. In this paper we propose a solution for generating parallel and independent quantum keys using a silicon chip transmitter and exploiting the concept of space division multiplexing in a multicore fiber. By adopting a single laser source and two different silicon chips, we realized a proof of concept (POC) experiment that demonstrates the generation of multiple independent quantum keys through the decoystate BB84 protocol. This demonstrated functionality is a first step towards SDM quantum networks.
Experimental implementation
QKD protocol
The protocol implemented in the current experiment is the well known BB84 (with decoy states). By using the spatial dimension as a degree of freedom, instead of the standard way of using polarization, we encode the qubits on multiple cores of the MCF in such a way that for every two cores (cores A and B and cores C and D and so on), two mutually unbiased bases can be generated. In particular, for cores A and B, the basis \({{\mathscr{X}}}_{1}\) is defined as \((A\rangle ;B\rangle )\) and basis \({{\mathscr{Z}}}_{1}\) as \((A+B\rangle ;AB\rangle )\). Similarly for cores C and D the states \(\{C\rangle ,D\rangle \}\in {{\mathscr{X}}}_{2}\) and \(\{C+D\rangle ,CD\rangle \}\in {{\mathscr{Z}}}_{2}\). The final secret key rate is established using^{3}:
I _{ AB } represents the classical mutual information between Alice and Bob (I _{ XY } = H(X) − H(XY)), with the marginal entropy is defined as \(H(X)={\sum }_{x\in X}\,p(x)logp(x)\). The right term of equation (1) min(I _{ AE } and \({I}_{BE}\)), is related to the quantum mutual information between Alice and Eve or Bob and Eve. Note that using the same chip structure a slightly different implementation is possible, i.e. asymmetric BB84 with decoystates^{18,19}. This protocol relies on two mutually unbiased bases, but does not use an equal probability for all quantum states. In other words, one of the two bases (\({\mathscr{X}}\)), is chosen more often than the other (\({\mathscr{Z}}\)) \({p}_{{\mathscr{X}}}\ne {p}_{{\mathscr{Z}}}\). In this way \({\mathscr{X}}\) is used for the key generation process and \({\mathscr{Z}}\) for security check. It follows that this protocol is more efficient compared to the standard BB84 (efficiency of 50%), and it allows a higher final secret key rate. In the current experiment we selected an equal probability both for the bases choice and for the state preparation, so the overall efficiency.
Decoystate weak coherent pulse generation
Most practical QKD systems today are implemented with weak coherent pulses (WCP), generated by an attenuated laser. This scheme however, is not completely secure against particular kinds of attack, like photonnumber splitting (PNS). In PNS attack, Eve blocks and discards all the single photon pulses while she only measures the multiphoton ones after the information reconciliation process. In this way, Bob and Eve measure the same quantum state, and at the end of the process Eve shares the same key. The decoystate technique was introduced in order to overcome this problem. A controlled realtime fluctuation of the mean photon number per pulse (μ) is used, in order to ensure the complete security of the final secret key. This technique is implemented in our experiment, where Alice’s silicon chip, constituted by multiple MachZehnder interferometers (MZIs), allows a complete freedom in terms of photon per pulse. By tuning the VOA _{1} (variable optical attenuator) and the MZI _{00} (the first index 0 represents the level of the MZI starting from left, while the second index is related to the number of the cores of the fiber) with a specific voltage, different values of μ can be obtained (see Fig. 1). In Table 1 we reported all the different cases for a 2keys example. The MZI operates like a tunable ratio (transmittance/ reflectance) beamsplitter where Alice randomly decides which values to use. In such a way, it is possible to create two independent quantum channels, which will generate two quantum keys. The example can be easily extended to a generic case where N cores generate N/2 different keys.
Generation of the quantum states
The quantum states used in the current implementation are based on spatial encoding, exploiting different cores of a MCF. As shown in Fig. 1, a 1550 nm continuous wave (CW) laser, has its light carved out to pulses by an intensity modulator at 5 kHz repetition rate and pulse width of 10 ns, which is coupled through a vertical coupler into the transmitter silicon chip (Alice). The quantum states are randomly prepared, by tuning the various MZIs, with a pseudorandom binary sequence (PRBS) sequence created by an FPGA board. Two PRBS seeds were used in order to create two parallel independent keys. In particular, by applying a different voltage on the MZI in Alice chip is possible to control the outputs of the integrated interferometers. After a first characterization of Alice’s chip, we fixed a 0 V level corresponding to having light only in one output (upper or lower). Consequently, a V _{ π } V value determines a reverse exit and a value of V _{ π }/2 V represents the fiftyfifty case with light in both outputs.
Moreover, a realtime individual decoy states value is prepared for each pulse. Different voltages applied to the MZI_{00} correspond to a specific decoy value, as reported in Table 1. Subsequently to the preparation of the quantum states, we used a grating coupler array to couple from the silicon integrated circuit to a 7cores fiber^{20,21}.
By exploiting this technique, we obtained a negligible cross talk between cores, around −30 dB, and stable transmission can be achieved. The insertion and coupling losses attributed to Alice’s chip are around 15 dB. In this way, we created two independent quantum channels based on the principle of space division multiplexing.
Detection
Once the quantum states are created and sent through the MCF, Bob measures the states in order to extract the quantum keys. In the experimental setup, two independent quantum keys, \({k}_{1}\) and k _{2}, as reported in Fig. 1, are generated and the keys can be extracted by creating interference between the cores at the output^{22,23}. In particular, tuning MZI_{11} to MZI_{1N }, on Bob’s side, it is possible to project the quantum states in different bases. Separate MZIs are used to measure in the mutually unbiased bases. In this way the randomness is maintained on the measurement side. The other MZIs (MZI_{01} to MZI_{0N }), present on Bob’s chip are used for phase stabilization between cores. In Fig. 2 we show the tomography of the two independent MUBs measured with weak laser pulses, repetition rate of 10 kHz, and average mean photons number of 0.4. By using the classical definition of fidelity (F(x, y) = ∑_{ i }(p _{ i } q _{ i })^{1/2} with x and y random variables and q _{ i } and p _{ i } vectors of probability distribution) we measured 93% and 96%. Another important parameter on the detection part is represented by the losses on the Bob’s side. The insertion loss attributed to Bob’s chip are measured to be around 8 dB (from the output of the MCF, just before the facet, to the output of the chip). This loss can be further decreased in future chips by introducing an Al mirror below the grating area^{24}. The four different outputs are coupled using a grating coupler array to four InGaAs single photon detectors, two ID230 and two ID220 respectively. In Fig. 3 we report the measured QBER for the two independent keys. Stable and low QBER well below the coherent attack limit are obtained for more than 12 minutes. The two plots show the different independent keys extracted in the experiment.
Secret key rate
After the measurement process it is possible to define a bound on the final secret key rate. This rate, given in Equation (1), depends on the strategy of the eavesdropper. We here included the case of collective attacks (CAs), where Eve can store the quantum states in her quantum memories and postpone the measurement till same future time. Alice and Bob discard the unmatched bases measurements, and subsequently perform error correction and privacy amplification, to extract the final key rate. In the case of decoystate quantum key distribution it is possible to derive the following equation for the secret key rate:
Here 1/2 is the probability related to the bases choice, h _{2} is the binary Shannon information function, u denotes the intensity of the signal states, Q _{ u } is the gain of the signal states, E _{ u } is the overall quantum bit error rate (QBER), e _{1} is the error rate of the singlephoton states and f(x) is the bidirectional error correction efficiency, usually upper bounded with the value of 1.22. The parameter Q _{ u } and E _{ u } can be measured directly from the experiment, while \({Q}_{1}\) and e _{1} can be estimated. Following the approach reported in Ma et al.^{4}, it is possible to derive a secret key rate bound. To be noted that in a practical implementation of this system, a different bound including the statistical fluctuation can be used^{5}. In Fig. 4, a real time measurement of the decoy state gain is reported. An average value of \({Q}_{{\mu }_{1}}\,=\,3.32\cdot {10}^{2}\pm 1.2\cdot {10}^{3}\) and \({Q}_{{\mu }_{2}}\mathrm{=1.67}\cdot {10}^{2}\pm 0.1\cdot {10}^{3}\) are measured on Bob’s side for the two independent keys, corresponding to a secret key rate generation of 113 bit/s for k _{1} and 60 for k _{2}. Note that for a complete QKD system realization, where Eve cannot steal any information from the link, the gain value should be measured on Alice’s side. However, in the current chip realization an extra output to do this measurement was not available. Nonetheless, in order to prove the realtime decoy state technique, we characterized the chip before the transmission over the multicore fiber channel in order to estimate the expected values.
Discussion
MCFs represent the new frontier of optical communication which can be used for long distance high capacity transmission^{25}. As previously proved in Ding et al.^{17}, this technology allows the creation of highdimensional Hilbert space necessary in HDQKD protocols. This PoC experiment extends the concept on a more general scenario. As seen from Figs 2, 3, and 4, the proposed scheme in principle works well for several minutes of measurement. In its present configuration, the experimental setup is merely for proof of principle, and higher key rates and longer transmission distances are expected to be achievable with minor upgrades. As a matter of fact, we fixed Alice’s repetition rate to 5 kHz. This choice was related to the transition time of the MZI. The interferometers are controlled by heating, which is a very precise, stable and high contrast method (more than 30 dB extinction ratio can be achieved), but comes with long rise and fall times. There exist several other solutions, based on modifying the material compositions and structures of the interferometers^{26,27,28}, which could be adapted to our scheme. InGaAs fast switches have recently been introduced and pn junction can also be considered for silicon photonic devices. Once this technology gap will be resolved, the secret key rate and thereby the capacity of the QKD system will be improved^{29,30}. Furthermore, our experiment was realized on an optical table with Alice and Bob being separated by only a few meters of multicore fiber. This is by no means a limit, as already shown by Cañas et al. in^{31}, where fibercaused changes to phase and polarization is alleviated using a phase stabilization setup. In addition, by using space division multiplexing another advantage is achieved compared to the polarization encoding scheme. In particular, by using a polarization based decoystate BB84 protocol over four cores of the multicore fiber, an higher final secret key rate can be achieved. However, problems like polarization instability (due to temperature and mechanical stress on the fiber) and polarization alignment (independent reference systems for each core) must be achieved during the communication process. In space division encoding the phase relation of the quantum states is slowly changing during the time, and a simple feedback loop will permit a stable longdistance QKD link^{32}. Moreover, one of the main problems in the deployment of quantum technologies is the compatibility between standard and quantum systems. In particular, optical communication through fiber links is subjected to various effects. The most critical one is represented by the Raman effect: inelastic scattering of photons by matter. In the case of high power monochromatic light propagating in an optical fibre, spontaneous Raman scattering transfers some of the photons to new frequencies. This problem, usually handled with narrow filters in classical optical communication, decreases the performance of the quantum systems by lowering the final key rate and the maximum distance. A solution is represented by the MCFs technology, where one of the cores (or more) can be used for classical light and the other ones as quantum channels^{12}. In this context we would point out that the presented scheme, based on spatial division multiplexed, can play an important role on future QKD systems. In fact, optical networks based on SDM are implemented and used in classical optical communication. HDQKD based on SDM, like Higher Order Modes (HOM) and Orbital Angular Momentum (OAM) states, permits the creation of very high dimension Hilbert space. In case of HD system, the maximum acceptable QBER value depends on the quantity N, the dimension of the space (e.g. individual attack limit of 25% for N = 4 and 2 MUBs). Regarding the final key rate, the number of bits that can be extracted scales with the equation R ≈ log _{2}(N)[1 − exp(−η)] (with η = 10^{−α*l/10} and l the link distance). In the case of SDM instead, the key rate is linearly dependent with the number of cores involved, R ≈ (N/2)[1 − exp(−η)]. Furthermore, a comparison of the achievable rate, obtained with different multiplexing techniques (WDM, TDM, CDMA), must be introduced. In the case of WDM setup, the final rate can be approximated to R ≈ (N)[1 − exp(−η)] where N in this case represents the different wavelengths used in the system (assuming perfect filters). To be noted, as already explained, that a WDM system requires N different transmitters, and very good filter in the receiver side, in order to avoid crosstalk between adjacent channels. The final rate for TMD can be written as R ≈ (N)[1 − exp(−η/N)], assuming a N users and perfect splitter. Finally, considering the case of CDMA technique (optimal orthogonal codes), the key rate can be reported as R ≈ [(1 − w ^{2})/N _{ c }]^{N − 1}[1 − exp(−η/N)] with w defined as the weight of the implemented code and N _{ c } the length of the code^{33}. As a consequence, and as reported in Fig. 5, depending on the quality of the channel and on the setting in which the system is used (distance, noise, temperature instability, etc.), a choice between the HDQKD and independent quantum keys is expected.
In conclusion, we proposed and demonstrated the use of multicore fibers used with SDM technique for QKD transmission. We successfully proved the principle by sending two separate quantum keys prepared by a silicon photonic chip through the same multicore fiber, and receiving the keys through a second silicon photonic chip. The measured QBER confirms the correct transmission and interpretation of the QKD scheme.
Methods
Device realization
Alice and Bob photonic integrated circuit (PICs) are formed by 250 nm of SOI silicon thickness and 1 μm of buried oxide layer (BOX) We used a single step process of ebeam lithography and inductively coupled plasma (ICP). Subsequently 1.500 μm thick layer of SiO2 was deposited on top of the chip using plasmaenhanced chemical vapor deposition technique. After the polish process the layer of SiO2 was reduced to 1 μ. In this way SiO2 works as a isolation layer between the silicon waveguide and the Titanium heaters fabricated on a second time to avoid potential optical losses. In this way by using ebeam lithography followed by metal deposition and liftoff process we created 100 nm thick of titanium heaters. As last step UV lithography technique, followed by metal deposition and liftoff process, was used to fabricate Au/Ti contact layer. The chip was then cleaved and wirebonded to a PCB board.
Electronic design
The chiptochip parallel key QKD scheme, based on spacedivision multiplexing is feasible thank to a real time control of the different MZIs presented on the silicon chip. These MZIs, as reported above, are controlled by heaters: conductor material which change his property when a voltage is applied. In order to tune in realtime these MZIs, different electrical signals are required in the transmitter and receiver side. An Altera FPGA board emits 8 digital parallel outputs every 0.2 ms, which are converted into analog voltages by 8 digitalanalog converters (DACs). Then, these analog signals are send to the transmitter and the receiver PCB board by flat cables.
References
Shor, P. Polynomialtime algorithms for prime factorization and discrete logarithms on a quantum computer. SIAM J. Comput. 26, 1484–1509 (1997).
Bennett, C. H. & Brassard, G. Quantum Cryptography: public key distribution and coin tossing, In Proceeding of IEEE International Conference on Computer, Systems & Signal Processing 175–179 (1984).
Scarani, V. et al. The security of practical quantum key distribution. Reviews of Modern Physics 81(3), 1301–1350 (2009).
Ma, X. et al. Practical decoy state for quantum key distribution. Phys. Rev. A 72(1), 012326 (2005).
Zhang, Z. et al. Improved keyrate bounds for practical decoystate quantum key distribution. Phys. Rev. A 95, 012333 (2017).
Hwang, W.Y. Quantum Key Distribution with High Loss: Toward Global Secure Communication. Phys. Rev. Lett. 91, 057901 (2003).
Bacco, D. et al. Twodimensional distributedphasereference protocol for quantum key distribution. Scientific Reports 6, 36756 (2016).
Zhong, T. et al. Photonefficient quantum key distribution using timeenergy entanglement with highdimensional encoding. New J. Phys. 17, 022002 (2015).
Zhu E. Y. Multiparty Agile QKD Network with a Fiberbased Entangled Source, in CLEO:JW2A.10, OSA Technical Digest (2015).
Fröhlich, B. et al. A quantum access network. Nature, 501 (7465) (2013).
Zhang, J. et al. Quantum internet using code division multiple access. Scientific Reports 3, 2211 (2013).
Dynes, J. F. et al. Quantum key distribution over multicore fiber. Opt. Express 24(8), 8081 (2016).
Smania, M. et al. Experimental quantum multiparty communication protocols. Npj Quantum Information 2, 16010 (2016).
Autebert, C. et al. Multiuser quantum key distribution with entangled photons from an AlGaAs chip. Quantum Science and Technology 1 (1) (2016).
Hentschel, M. et al. A Differential Phase Shift Scheme for Quantum Key Distribution in Passive Optical Networks, Arxiv: 1412.6311 (2014).
Nishioka, T., Ishizuka, H., Hasegawa, T., Abe, J. Circular type quantum key distribution, IEEE Photonics Technology Letters 14 (4) (2002).
Ding, Y. et al., HighDimensional Quantum Key Distribution based on Multicore Fiber using Silicon Photonic Integrated Circuits. npj Quantum Information 3, 25 (2017).
Tomamichel, M. et al. Tight finitekey analysis for quantum cryptography. Nat. Comms, 3 (2012).
Bacco, D. et al. Experimental quantum key distribution with finitekey analysis for noisy channels, Nature Communications, 4 (2012).
Ding, Y. et al. Onchip grating coupler array on the SOI platform for fanin/fanout of MCFs with low insertion loss and crosstalk. Opt. Express 23, 3292–3298 (2015).
Van Laere, F. et al. Focusing polarization diversity grating couplers in silicononinsulator. J. Lightwave Technol. 27, 612–618 (2009).
Ding, Y., Ou, H. & Peucheret, C. Ultrahighefficiency apodized grating coupler using fully etched photonic crystals. Opt. Lett. 38, 2732–2734 (2013).
Ding, Y. et al. Reconfigurable SDM switching using novel silicon photonic integrated circuit. Scientific Reports 6, 39058 (2016).
Ding, Y. et al. Fully etched apodized grating coupler on the SOI platform with 0.58 dB coupling efficiency. Opt. Lett. 39(18), 5348–5350 (2014).
Mizuno, T. et al. 32core Dense SDM Unidirectional Transmission of PDM16QAM Signals Over 1600 km Using Crosstalkmanaged Singlemode Heterogeneous Multicore Transmission Line, In Optical Fiber Communication Conference (OFC), postdeadline Papers Th5C.3 (2016).
Gan, S. et al. A highly efficient thermooptic microring modulator assisted by graphene. Nanoscale 7, 20249–20255 (2015).
Yan, S. et al. Slowlightenhanced energy efficiency for the graphene microheater on silicon photonic crystal waveguides. Nat. Commun. 8, 14411 (2017).
Png, C. E., Chan, S. P., Lim, S. T. & Reed, G. T. Optical phase modulators for MHz and GHz modulation in silicononinsulator (SOI). J. Lightwave Technol. 22, 1573–1582 (2004).
Sibson, P. et al. Chipbased Quantum Key Distribution. Nat. Commun. 8, 13984 (2017).
Ma, C. et al. Silicon photonic transmitter for polarizationencoded quantum key distribution, Optica 3 (2016).
Cañas, G. et al. Highdimensional decoystate quantum key distribution over 0.3 km of multicore telecommunication optical fibers. Phys. Rev. A 96, 022317 (2017).
Agrawal, G. P. FiberOptic Communication Systems. (John Wiley & Sons, Inc, Hoboken, NJ, USA, 2010).
Razavi, M. MultipleAccess Quantum Key Distribution Networks, IEEE Trans on commun. 60 (2012).
Acknowledgements
This work is supported by the Danish Council for Independent Research (DFF133700152 and DFF133500771), by the Center of Excellence, SPOC (Silicon Photonics for Optical Communications (ref DNRF123) and from the People Programme (Marie Curie Actions) of the European Union’s Seventh Framework Programme (FP7/20072013) under REA grant agreement no 609405 (COFUNDPostdocDTU).
Author information
Authors and Affiliations
Contributions
D. Bacco and Y. Ding proposed the idea. Y. Ding designed and fabricated the silicon PICs. K. Dalgaard and D. Bacco designed the electrical controlling circuits. D. Bacco, Y. Ding, and K. Dalgaard performed the system experiment. D. Bacco carried out the theoretical analysis on the proposed protocol. D. Bacco, Y. Ding, K. Rottwitt, and L.K. Oxenløwe discussed the results. All authors contributed to the writing of the manuscript.
Corresponding authors
Ethics declarations
Competing Interests
The authors declare that they have no competing interests.
Additional information
Publisher's note: Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.
Rights and permissions
Open Access This article is licensed under a Creative Commons Attribution 4.0 International License, which permits use, sharing, adaptation, distribution and reproduction in any medium or format, as long as you give appropriate credit to the original author(s) and the source, provide a link to the Creative Commons license, and indicate if changes were made. The images or other third party material in this article are included in the article’s Creative Commons license, unless indicated otherwise in a credit line to the material. If material is not included in the article’s Creative Commons license and your intended use is not permitted by statutory regulation or exceeds the permitted use, you will need to obtain permission directly from the copyright holder. To view a copy of this license, visit http://creativecommons.org/licenses/by/4.0/.
About this article
Cite this article
Bacco, D., Ding, Y., Dalgaard, K. et al. Space division multiplexing chiptochip quantum key distribution. Sci Rep 7, 12459 (2017). https://doi.org/10.1038/s41598017123093
Received:
Accepted:
Published:
DOI: https://doi.org/10.1038/s41598017123093
This article is cited by

Autocompensating measurementdeviceindependent quantum cryptography in space division multiplexing optical fibers
Journal of the European Optical SocietyRapid Publications (2021)

Quantum information processing with spacedivision multiplexing optical fibres
Communications Physics (2020)

Boosting the secret key rate in a shared quantum and classical fibre communication system
Communications Physics (2019)
Comments
By submitting a comment you agree to abide by our Terms and Community Guidelines. If you find something abusive or that does not comply with our terms or guidelines please flag it as inappropriate.