Open Access
This article is

- freely available
- re-usable

*Entropy*
**2018**,
*20*(6),
461;
https://doi.org/10.3390/e20060461

Article

Improving the Maximum Transmission Distance of Self-Referenced Continuous-Variable Quantum Key Distribution Using a Noiseless Linear Amplifier

^{1}

School of Information Science and Engineering, Central South University, Changsha 410083, China

^{2}

School of IOT Engineering, Taihu University, Wuxi 214064, China

^{*}

Author to whom correspondence should be addressed.

Received: 10 May 2018 / Accepted: 12 June 2018 / Published: 14 June 2018

## Abstract

**:**

We show that a noiseless linear amplifier (NLA) can be placed properly at the receiver’s end to improve the performance of self-referenced (SR) continuous variable quantum key distribution (CV-QKD) when the reference pulses are weak. In SR CV-QKD, the imperfections of the amplitude modulator limit the maximal amplitude of the reference pulses, while the performance of SR CV-QKD is positively related to the amplitude of the reference pulses. An NLA can compensate the impacts of large phase noise introduced by the weak reference pulses. Simulation results derived from collective attacks show that this scheme can improve the performance of SR CV-QKD with weak reference pulses, in terms of extending maximum transmission distance. An NLA with a gain of g can increase the maximum transmission distance by the equivalent of $20{\mathrm{log}}_{10}g$ dB of losses.

Keywords:

continuous variable; quantum key distribution; noiseless linear amplifier (NLA)## 1. Introduction

Quantum key distribution (QKD) is the state-of-the-art application of quantum technologies, which is able to establish a secret key between two distant legal communicators, usually called Alice and Bob, through an insecure classical channel or quantum channel [1,2,3,4]. QKD has three major branches, the first is the discrete variable (DV) QKD based on manipulating and detecting the single photon state (polarization or phase), the second is the continuous variable (CV) QKD based on preparing and measuring coherent state or EPR state [5,6,7,8], and the last one is the differential phase reference (DPR) QKD [9,10,11]. With the depth of research in recent years, CV-QKD has fully demonstrated its major merits, such as high detection efficiency and low experimental cost. Most importantly, it can be implemented by using the existing commercial fibre communication networks, so it has attracted much attention and given many meaningful research results [12,13,14,15,16].

Generally, the most studied CV-QKD protocol is the GG02 protocol [5] and its unconditional security has been conducted in theory [17,18,19]. However, recent studies show that the imperfections in the Gaussian CV-QKD experimental system setups will cause a series of new severe security loopholes [20,21,22]. Furthermore, in Gaussian CV-QKD protocols, a high-brightness classical beam called local oscillator (LO) is co-transmitted with the weak quantum signal. The LO is indispensable because it can provide phase reference when Bob performs coherent detection on the received quantum signals. Some side-channel attacks aiming at LO have been confirmed , which can greatly reduce the overall security of the Gaussian CV-QKD protocol [23,24]. Fortunately, a novel scheme named self-referenced (SR) CV-QKD that could generate real “local” LO at Bob’s end has been proposed very recently [25,26,27] and shows its robustness in allusion to these attacks. However, due to the limited dynamic modulation range of the amplitude modulator, the amplitude of the reference pulses cannot be too large in practical. Besides, the imperfections in Alice’s modulator will create an extra excess noise proportional to the amplitude of reference pulses. This further limits the maximum amplitude of the reference pulses [28]. Since the secret key rate and the maximum transmission distance of SR CV-QKD scheme is positively correlated with the amplitude of the reference pulses, the weak reference pulses can degrade the performance of SR CV-QKD greatly.

Recently, some works have shown that a noiseless linear amplifier (NLA) [29,30,31,32,33,34,35,36] could be properly embedded in CV-QKD to fight against channel loss and improve maximum transmission distance [37,38,39,40,41]. In our paper, we consider the use of an NLA inserted before the detection stage in an SR CV-QKD scheme to improve the transmission distance when the reference pulses are weak. Usually, an NLA can amplify the amplitude of input coherent probabilistically while retaining the original level of channel noise [29]. This is very important for the SR CV-QKD because it is very sensitive to the phase noise. When we only take the successful runs of an NLA into account, it can compensate the adverse effects of high phase noise introduced by weak self-referenced pulse and attain a much longer transmission distance. Besides, the impact of the probability that the NLA successfully amplified the quantum signal may be inconspicuous because it is the gain of NLA g that influences the maximum transmission distance primarily rather than the success rate, which is always lower than $1/{g}^{2}$ [37].

This article is organized as follows. In Section 2, we review the SR CV-QKD scheme, and then we introduce the NLA SR CV-QKD schme. In Section 3, we analyze the secret key rate of our proposed scheme and demonstrate the maximum transmission distance improvement. Finally, we summarize our paper in Section 4.

## 2. The SR CV-QKD Scheme & Our Proposed Scheme

Figure 1a illustrates the steps of the conventional Gaussian CV-QKD scheme. The LO and modulated quantum signals are co-transmitted by adapting techniques like time-division multiplexing (TDM), wavelength-division multiplexing (WDM) and polarization encoding. After receiving the multiplexed signals, Bob uses a demultiplexer to split the LO and quantum signals. As mentioned above, the nature of LO would cause side-channel attacks and it is knotty to multiplex and demultiplex two kinds of signals that differ greatly in amplitude.

The SR CV-QKD scheme [25,26,27] described in Figure 1b has removed the demand of transporting LO successfully. In SR CV-QKD scheme, Alice sends a Gaussian modulated coherent state to Bob just like performed in conventional CV-QKD scheme at first, in the next time bin, she prepares another coherent state as the reference pulse and sends to Bob. The amplitude of the reference pulse, ${E}_{R}$, is few times larger than the variance of the quantum signal, ${V}_{A}$.

The reference pulse is used to estimate the deviation angle $\widehat{\theta}$ between Alice and Bob’s reference frame. The $\widehat{\theta}=\theta +\varphi $, where $\theta $ is the actual deviation angle and $\varphi $ is the measurement error mainly caused by the quantum uncertainty. We can easily deduce the value of $\widehat{\theta}$ from some simple geometric calculations and find the correlations between the quadratures of sent quantum states and the quadratures of received quantum states.

Since the system performance of SR CV-QKD is positively related to the amplitude of the reference pulses ${E}_{R}$, the authors choose arbitrary large ${E}_{R}$ to attain a longer transmission distances and a higher secret key rate. However, due to the limited dynamic modulation range of the amplitude modulator (AM), the value of ${E}_{R}$ cannot be too large in practical terms. Besides, the imperfections existing in Alice’s AM will introduce an extra excess noise that can be approximated as [28]
where ${E}_{max}$ is the maximal amplitude to be modulated and the ${d}_{dB}$ represents the dynamic modulation range of the AM. Since the extra excess noise is proportional to the amplitude ${E}_{max}$, and ${d}_{dB}$ has a finite value, this imperfection further limits the amplitude of reference pulses. However, the weaker the reference pulse, the larger the measurement error for $\theta $ caused by the quantum uncertainty, and the greater the phase noise variance, ultimately resulting in degrading the performance of SR CV-QKD. In the case of transporting weak reference pulses (${E}_{R}/{V}_{A}=20,{V}_{A}=40$), the maximum transmission distance of SR CV-QKD is less than 15 km [25]. Therefore, the range of applications of the original SR CV-QKD scheme may be limited.

$${\epsilon}_{AM}={E}_{max}^{2}{10}^{-{d}_{dB}/10},$$

The NLA has been proven to be a useful tool to extend the maximum transmission distance of Gaussian CV-QKD [37,38,39]. In this paper, an NLA is placed at Bob’s end before the coherent detection described in Figure 2 to increase the maximum transmission distance of SR CV-QKD when reference pulses are weak. As usual, we will use the entangle-based (EB) version to describe and analyze our scheme and start with analysing the covariance matrix of the state ${\rho}_{AB}$ shared between Alice and Bob before any measurement. In a conventional CV-QKD scheme, the covariance matrix ${\gamma}_{AB}$ has the following form:
where $\mathbb{I}=\left(\begin{array}{cc}1& 0\\ 0& 1\end{array}\right)$ and ${\sigma}_{z}=\left(\begin{array}{cc}1& 0\\ 0& -1\end{array}\right)$, $V\left(\lambda \right)=\frac{1+{\lambda}^{2}}{1-{\lambda}^{2}}$ is the variance of the thermal state $T{r}_{A}|\lambda \rangle \langle \lambda |$ related to the modulation variance and $\lambda $ is the parameter of squeezed state, the $B=\frac{1-T}{T}$ refer to the noise introduced by the channel loss, the $\epsilon $ is the channel excess noise.

$$\begin{array}{c}\hfill \begin{array}{c}\hfill {\gamma}_{AB}(\lambda ,T,\epsilon )=\left(\begin{array}{cc}V\left(\lambda \right)\mathbb{I}& \sqrt{T(V{\left(\lambda \right)}^{2}-1)}{\sigma}_{z}\\ \sqrt{T(V{\left(\lambda \right)}^{2}-1)}{\sigma}_{z}& T\left[V\left(\lambda \right)+B+\epsilon \right]\mathbb{I}\end{array}\right),\end{array}\end{array}$$

When an NLA is inserted into a conventional CV-QKD, only when the NLA works on its successful runs, the exchanged quantum signals will be used for extracting the secret key. Therefore, the scheme of CV-QKD added an NLA is very similar to those CV-QKD schemes with postselection [42]. Since the output of the NLA remains in the Gaussian regime, we can use an equivalent EPR scheme without NLA to analyse the impacts of an NLA on the original scheme. It is shown in Figure 3 that the covariance matrix ${\gamma}_{AB}(\lambda ,T,\epsilon )$ is equivalent to the covariance matrix ${\gamma}_{e\left(AB\right)}(\zeta ,\eta ,{\epsilon}^{g},g=1)$ ($g=1$ indicates no NLA). These equivalent parameters are given by [37]
It is clear that the parameters $(\zeta ,\eta ,{\epsilon}^{g})$ are equal to the parameters $(\lambda ,T,\epsilon )$ respectively when $g=1$. These parameters must meet with the physical meaning limits of $0\u2a7d\zeta <1$, $0\u2a7d\eta <1$ and ${\epsilon}^{g}\u2a7e0$, and the maximum value of the gain ${g}_{max}$ is given by [37]

$$\begin{array}{c}\hfill \begin{array}{c}\zeta =\lambda \sqrt{\frac{({g}^{2}-1)(\epsilon -2)T-2}{({g}^{2}-1)\epsilon T-2}},\hfill \\ \eta =\frac{{g}^{2}T}{({g}^{2}-1)T[\frac{1}{4}({g}^{2}-1)(\epsilon -2)\epsilon T-\epsilon +1]+1}\hfill \\ {\epsilon}^{g}=\epsilon -\frac{1}{2}({g}^{2}-1)(\epsilon -2)\epsilon T.\hfill \end{array}\end{array}$$

$$\begin{array}{c}\hfill {g}_{max}(T,\epsilon )=\sqrt{\frac{\epsilon [T(\epsilon -4)+2]+4\sqrt{\frac{T(\epsilon -2)+2}{\epsilon}}-2\sqrt{\epsilon \left[T\right(\epsilon -2)+2]}+4T-4}{T{(\epsilon -2)}^{2}}}.\end{array}$$

In the SR CV-QKD scheme, the removal of LO will not change the relevant parameters of the channel. Therefore, our proposed scheme can be regarded as an equivalent SR CV-QKD scheme without inserting an NLA, while the equivalent parameters are consistent with the parameters in Equation (3). When we take the phase-space rotations due to the reference frame misalignment into account, the density matrix of the state shared by Alice and Bob in the equivalent SR CV-QKD scheme without using NLA is [25]
with
where ${U}_{A\left(B\right)}$ represents the phase-space rotation operator, $\mathcal{P}\left(\varphi \right)$ is the probability distribution function of random variable $\varphi $. While the state ${\overline{\rho}}_{e\left(AB\right)}$ maintains Gaussian, the covariance matrix ${\overline{\gamma}}_{e\left(AB\right)}$ can be expressed as follows [25]
with
the ${\mathsf{U}}_{A\left(B\right)}$ is the symplectic representation of the rotation operator ${U}_{A\left(B\right)}$.

$$\begin{array}{c}\hfill {\overline{\rho}}_{e\left(AB\right)}=\overline{{\rho}_{e\left(AB\right)}(\widehat{\theta},\theta )}={\int}_{-\pi}^{\pi}\mathrm{d}\varphi \mathcal{P}\left(\varphi \right){\int}_{-\pi}^{\pi}\frac{\mathrm{d}\theta}{2\pi}{\rho}_{e\left(AB\right)}(\widehat{\theta},\theta )\end{array}$$

$${\rho}_{e\left(AB\right)}(\widehat{\theta},\theta )=\left[{U}_{A}(-\widehat{\theta}){U}_{B}\left(\theta \right)\right]{\rho}_{e\left(AB\right)}\left[{U}_{A}^{\u2020}(-\widehat{\theta}){U}_{B}^{\u2020}\left(\theta \right)\right],$$

$$\begin{array}{c}\hfill {\overline{\gamma}}_{e\left(AB\right)}=\overline{{\gamma}_{e\left(AB\right)}(\widehat{\theta},\theta )}={\int}_{-\pi}^{\pi}\mathrm{d}\varphi \mathcal{P}\left(\varphi \right){\int}_{-\pi}^{\pi}\frac{\mathrm{d}\theta}{2\pi}{\gamma}_{e\left(AB\right)}(\widehat{\theta},\theta )\end{array}$$

$${\gamma}_{e\left(AB\right)}(\widehat{\theta},\theta )=[{\mathsf{U}}_{A}(-\widehat{\theta})\oplus {\mathsf{U}}_{B}\left(\theta \right)]{\gamma}_{e\left(AB\right)}[{\mathsf{U}}_{A}^{\top}(-\widehat{\theta})\oplus {\mathsf{U}}_{B}^{\top}\left(\theta \right)],$$

In our scheme, during each time of successful amplification, the NLA can be regarded as an operator $\widehat{\mathbf{C}}$. It can amplify a coherent state from $|\alpha \rangle $ to $\widehat{\mathbf{C}}|\alpha \rangle ={e}^{\frac{{\left|\alpha \right|}^{2}}{2}({g}^{2}-1)}|g\alpha \rangle $ probabilistically [37], where g is the gain of NLA. In other words, the NLA can increase the variance of the original quantum signals and improve the channel transmittance. This can offset the adverse effects of the large phase noise incurred by the weak reference pulses and extend the maximum transmission distance of SR CV-QKD. In the next section, we will use numerical simulations to illuminate this improvement in detail.

## 3. Performance Analysis

In SR CV-QKD, the modulation process for the quantum signal and reference pulse is time independent. When the AM only modulates the reference pulses, the large ${E}_{R}$ and the finite dynamic modulation range ${d}_{dB}$ would introduce a large ${\epsilon}_{AM}$. So, we need to set a reasonable and realistic value for reference pulse amplitude to eliminate the effect of ${\epsilon}_{AM}$ on its measurement result. When the AM only modulates the quantum signals, the extra excess noise ${\epsilon}_{AM}$ in Equation (1) is independent of ${E}_{R}$, but is related to the amplitude of quantum signals. Considering that the intensity ${E}_{max}^{2}$ of modulated quantum signal is just few times larger than ${V}_{A}$ [43], the value of resulting excess ${\epsilon}_{AM}$ is tiny (${\epsilon}_{AM}\sim {10}^{-3}$ for ${V}_{A}=4$, ${E}_{max}^{2}=10{V}_{A}$, and ${d}_{dB}=40$). Compared to the noise introduced by the Gaussian channel ($B+\epsilon $), the influence of ${\epsilon}_{AM}$ introduced by the quantum signals on the system performance could be ignored.

The secret key rate of SR CV-QKD scheme under collective attacks with reverse reconciliation is [3,25,44]
where ${I}_{AB}$ is the mutual information between Alice’s and Bob’s measurements and it can be expressed as
where $\xi =1-{\left(\overline{\mathrm{cos}\varphi}\right)}^{2}$. Presuming that the distribution interval of $\mathcal{P}\left(\varphi \right)$ is symmetrical and very narrow, namely $\left|\varphi \right|\sim 0$, then we get $\xi \approx \overline{{\varphi}^{2}}$. When the rate of pulse generation is much greater than the fluctuation frequency of phase difference $\theta $, the value of $\theta $ can be treated as a specific constant. Therefore, the variance of estimated phase difference $\widehat{\theta}$ is ${V}_{\widehat{\theta}}={V}_{\varphi}=\overline{{\varphi}^{2}}$. If $P\left(\varphi \right)$ is rapidly monotonically decreasing in the interval $[0,|\varphi {|}_{max}]$, the variance ${V}_{\widehat{\theta}}$ can be regarded as a tight up bound of $\xi $, which means $\xi \lesssim {V}_{\widehat{\theta}}$. The expression of ${V}_{\widehat{\theta}}$ is as follows [25]
So, the lower bound of ${I}_{AB}$ is
The ${\chi}_{BE}$ is the Holevo bound denotes for Eve’s maximum accessible information, which can be derived from the following formula:
where $G\left(x\right)=(x+1){\mathrm{log}}_{2}(x+1)-x{\mathrm{log}}_{2}\left(x\right)$ is the Von Neumann entropy of a thermal state. The eigenvalues ${\lambda}_{1}$ and ${\lambda}_{2}$ are obtained from
where we have used the notations
The square of symplectic eigenvalue ${\lambda}_{3}$ reads
We can notice that the ${\chi}_{BE}$ is monotonically increasing with increasing $\xi $. When we replace the $\xi $ in Equations (15) and (16) with ${V}_{\widehat{\theta}}$, the lower bound of K is acquired.

$$K=\beta {I}_{AB}-{\chi}_{BE},$$

$${I}_{AB}=\frac{1}{2}{\mathrm{log}}_{2}\left(\frac{{V}_{A}}{{V}_{A\mid B}}\right)=\frac{1}{2}{\mathrm{log}}_{2}\left(\frac{V+B+\epsilon}{B+\epsilon +1+(V-1)\xi}\right),$$

$${V}_{\widehat{\theta}}=\frac{B+\epsilon +1}{{E}_{R}}+\frac{1}{T{E}_{R}}.$$

$${I}_{AB}\gtrsim \frac{1}{2}{\mathrm{log}}_{2}\left(\frac{V+B+\epsilon}{B+\epsilon +1+(V-1){V}_{\widehat{\theta}}}\right).$$

$${\chi}_{BE}=G\left(\frac{{\lambda}_{1}-1}{2}\right)+G\left(\frac{{\lambda}_{2}-1}{2}\right)-G\left(\frac{{\lambda}_{3}-1}{2}\right),$$

$$\begin{array}{c}\hfill {\lambda}_{1,2}^{2}=\frac{1}{2}\left(\Delta \pm \sqrt{{\Delta}^{2}-4{D}^{2}}\right),\end{array}$$

$$\begin{array}{c}\hfill \begin{array}{c}\Delta ={V}^{2}+{T}^{2}{(V+B+\epsilon )}^{2}+2T({V}^{2}-1)(\xi -1),\hfill \\ D=T[V(B+\epsilon )+1+({V}^{2}-1)\xi ].\hfill \end{array}\end{array}$$

$$\begin{array}{c}\hfill {\lambda}_{3}^{2}=V\frac{V(B+\epsilon )+1+({V}^{2}-1)\xi}{V+B+\epsilon}.\end{array}$$

As mentioned earlier, our scheme of SR CV-QKD with an NLA has parameters $(\lambda ,T,\epsilon ,g)$ and can be treated as one-way SR CV-QKD without NLA having parameters $(\zeta ,\eta ,{\epsilon}^{g},g=1)$. When our scheme works on the successful runs, the secret information in Equation (9) could be acquired by adopting the equivalent parameters
Since the NLA could retain the original level of channel noise, the random variables $\theta $ and $\varphi $ will not be affected, so that we could use the method stated in [25] to handle them. Finally, we can use the covariance matrix ${\overline{\gamma}}_{e\left(AB\right)}$ to figure out $\Delta {K}_{SR}(\zeta ,\eta ,{\epsilon}^{g},\beta )$.

$$\begin{array}{c}\hfill \Delta {K}_{SR}^{g}(\lambda ,T,\epsilon ,\beta )=\Delta {K}_{SR}(\zeta ,\eta ,{\epsilon}^{g},\beta ).\end{array}$$

Before starting the simulation, we need to take the successful amplification probability ${P}_{SS}$ of the NLA into account. The actual value of ${P}_{SS}$ is related to the experimental setups and it is not important to our study because on the one hand we mainly focus on the maximum distance, and on the other hand, it is only a proportional coefficient and cannot transform a negative secret key into a positive one. Besides, The ${P}_{SS}$ could be treated as constant if the NLA has sufficient dynamics to neglect distortions [37]. Then we can get the secret key rate with NLA by multiplying $\Delta {K}_{SR}$ by the ${P}_{SS}$
the ${P}_{SS}$ for an NLA with a gain of g is upper bounded to $1/{g}^{2}$, which will be used in the later analysis.

$$\begin{array}{c}\hfill \Delta {K}_{NLA}={P}_{SS}\Delta {K}_{SR}(\zeta ,\eta ,{\epsilon}^{g},\beta ),\end{array}$$

As mentioned above, the amplitude of the reference pulses ${E}_{R}$ is critical to the performance of the SR CV-QKD scheme. The larger the value of ${E}_{R}$, the smaller the variance of the measurement error for $\theta $ and the higher the secret key rate. Figure 4a shows the relationship between variance ${V}_{\widehat{\theta}}$ and transmission distance and the secret key rate at different values of ${E}_{R}$. In contrast to an ideal value like $500{V}_{A}$, when ${E}_{R}$ is given a more reasonable value such as $20{V}_{A}$, the value of ${V}_{\widehat{\theta}}$ is approximately doubled. Figure 4b illustrates the secret key rate and the maximum transmission distance of SR CV-QKD when ${E}_{R}$ takes ideal and reasonable values, respectively. When the reference pulses are weak $({E}_{R}/{V}_{A}=20)$, the maximum transmission distance is limited to about 10 km, which is less than half of the transmission distance in the LO scheme . At this point, the SR CV-QKD scheme is only suitable for short-range communications and cannot even be used in urban communication networks.

Another important point in our scheme is the gain of NLA. The value of ${g}_{max}$ in Equation (4) only depends on the channel parameters ($T,\epsilon $). In Figure 5a, we display the correlation between the ${g}_{max}$ and transmission distance, while the excess noise $\epsilon $ is 0.01. The simulations of $\Delta {K}_{NLA}$ with the same channel parameters are shown Figure 5b. In this figure, we set the value of g to 3, which is lower than the ${g}_{max}$ in Figure 5a. We can see that the NLA with a gain of g can help increase the distance by the equivalent $20{\mathrm{log}}_{10}g$ dB of losses ($100{\mathrm{log}}_{10}g$ km when the fibre attenuation coefficient $\alpha =0.2$ dB/km).

However, increasing the value of g will increase the transmission distance intuitively but the secret key rate may become negative. There are two reasons for this, one is the possibility ${P}_{SS}$, and the other is the excess noise ${\epsilon}^{g}$ will increase as well. In Figure 6a, we can see that when the transmission distance is determined, the secret key rate will increase as the gain increases to a certain value. As the gain continues to increase, the secret key rate drops rapidly and eventually becomes negative. In addition, the maximum tolerable excess noise of SR CV-QKD against transmission distance with different gain g is shown in Figure 6b. It has clearly demonstrated that our scheme can tolerate a much higher excess noise while the secret key rate remains positive.

We should note that the simulation results displayed above may not correspond to the results of the practical experiment, because the possibility of ${P}_{SS}$ being a tunable parameter depends on the facilities configuration. However, they have clearly illustrated the effects of an NLA on the maximum transmission distance and secret key rate.

## 4. Conclusions

In SR CV-QKD, when the reference pulses are weak, the large phase noise shows a conspicuous adverse effect on its performance, which means a shorter transmission distance and a lower key rate. We show that an NLA can help to improve the performance of SR CV-QKD with weak reference pulses. The NLA can compensate the impacts of extra phase noise by enhancing the original quantum signals and increasing the channel transmittance. Our proposed scheme demonstrates that the NLA can help increase the distance by the equivalent $20{\mathrm{log}}_{10}g$ dB of losses ($g=3$ for 47 km) and the secret key rate is still acceptable. However, it should be mentioned here that we have only conducted theoretical analysis; the gap between practical implementations and theoretical models should also be considered. Any imperfection that exists in the actual experiment would introduce more complex parameters. This issue is not within the scope of our current consideration, and deserves further investigation.

## Author Contributions

Y.W. gave the general idea of the study and designed the conception of the study. X.W. accomplished the formula derivation and numerical simulations and drafted the article. D.H. provided feasible advices and critical revision of the manuscript. Y.G. reviewed relevant studies and literature, conceived of and designed the study and performed critical revision of the manuscript. All authors have read and approved the final manuscript.

## Acknowledgments

This work was supported by the National Natural Science Foundation of China (Grant No. 61572529).

## Conflicts of Interest

The authors declare no conflict of interest.

## References

- Bennett, C.H.; Brassard, G. Quantum cryptography: Public key distribution and coin tossing. In Proceedings of the IEEE International Conference on Computers, Systems and Signal Processing, Bangalore, India, 9–12 December 1984; pp. 175–179. [Google Scholar]
- Gisin, N.; Ribordy, G.; Tittel, W.; Zbinden, H. Quantum cryptography. Rev. Mod. Phys.
**2002**, 74, 145. [Google Scholar] [CrossRef] - Scarani, V.; Bechmann-Pasquinucci, H.; Cerf, N.J.; Dušek, M.; Lütkenhaus, N.; Peev, M. The security of practical quantum key distribution. Rev. Mod. Phys.
**2009**, 81, 1301. [Google Scholar] [CrossRef] - Lo, H.-K.; Curty, M.; Tamaki, K. Secure quantum key distribution. Nat. Photonics
**2014**, 8, 595–604. [Google Scholar] [CrossRef][Green Version] - Grosshans, F.; Grangier, P. Continuous variable quantum cryptography using coherent states. Phys. Rev. Lett.
**2002**, 88, 057902. [Google Scholar] [CrossRef] [PubMed] - Braunstein, S.L.; van Loock, P. Quantum information with continuous variables. Rev. Mod. Phys.
**2005**, 77, 513. [Google Scholar] [CrossRef] - Wang, X.B.; Hiroshima, T.; Tomita, A.; Hayashi, M. Quantum information with gaussian states. Phys. Rep.
**2007**, 44, 1–111. [Google Scholar] [CrossRef] - Weedbrook, C.; Pirandola, S.; García-Patrón, R.; Cerf, N.J.; Ralph, T.C.; Shapiro, J.H.; Lloyd, S. Gaussian quantum information. Rev. Mod. Phys.
**2012**, 84, 621. [Google Scholar] [CrossRef] - Inoue, K.; Waks, E.; Yamamoto, Y. Differential-phase-shift quantum key distribution using coherent light. Phys. Rev. A
**2003**, 68, 022317. [Google Scholar] [CrossRef] - Stucki, D.; Brunner, N.; Gisin, N.; Scarani, V.; Zbinden, H. Fast and simple one-way quantum key distribution. Appl. Phys. Lett.
**2005**, 87, 194108. [Google Scholar] [CrossRef][Green Version] - Bacco, D.; Christensen, J.B.; Castaneda, M.A.U.; Ding, Y. Two-dimensional distributed-phase-reference protocol for quantum key distribution. Sci. Rep.
**2016**, 6, 36756. [Google Scholar] [CrossRef] [PubMed][Green Version] - Ma, H.X.; Bao, W.S.; Li, H.W. Quantum hacking of two-way continuous-variable quantum key distribution using trojan-horse attack. Chin. Phys. B
**2016**, 25, 080309. [Google Scholar] [CrossRef] - Guo, Y.; Liao, Q.; Huang, D.; Zeng, G.H. Quantum relay schemes for continuous-variable quantum key distribution. Phys. Rev. A
**2017**, 95, 042326. [Google Scholar] [CrossRef] - Guo, Y.; Xie, C.L.; Liao, Q.; Zhao, W.; Zeng, G.H.; Huang, D. Entanglement-distillation attack on continuous-variable quantum key distribution in a turbulent atmospheric channel. Phys. Rev. A
**2017**, 96, 022320. [Google Scholar] [CrossRef] - Liu, W.Q.; Peng, J.Y.; Huang, P.; Huang, D.; Zeng, G.H. Monitoring of continuous-variable quantum key distribution system in real environment. Opt. Express
**2017**, 25, 19429–19443. [Google Scholar] [CrossRef] [PubMed] - Huang, P.; Huang, J.Z.; Wang, T.; Li, H.S.; Huang, D.; Zeng, G.H. Robust continuous-variable quantum key distribution against practical sttacks. Phys. Rev. A
**2017**, 95, 052302. [Google Scholar] [CrossRef] - Grosshans, F. Collective attacks and unconditional security in continuous variable quantum key distribution. Phys. Rev. Lett.
**2005**, 94, 020504. [Google Scholar] [CrossRef] [PubMed] - Navascues, M.; Acín, A. Security bounds for continuous variables quantum key distribution. Phys. Rev. Lett.
**2005**, 94, 020505. [Google Scholar] [CrossRef] [PubMed] - Leverrier, A. Composable security proof for continuous-Variable quantum key distribution with coherent States. Phys. Rev. Lett.
**2015**, 114, 070501. [Google Scholar] [CrossRef] [PubMed] - Huang, J.Z.; Weedbrook, C.; Yin, Z.Q.; Wang, S.; Li, H.W.; Chen, W.; Guo, G.C.; Han, Z.F. Quantum hacking of a continuous-variable quantum-key-distribution system using a wavelength attack. Phys. Rev. A
**2013**, 87, 062329. [Google Scholar] [CrossRef] - Ma, X.C.; Sun, S.H.; Jiang, M.S.; Liang, L.M. Wavelength attack on practical continuous-variable quantum-key-distribution system with a heterodyne protocol. Phys. Rev. A
**2013**, 87, 052309. [Google Scholar] [CrossRef] - Qin, H.; Kumar, R.; Alléaume, R. Saturation attack on continuous-variable quantum key distribution system. Proc. SPIE
**2013**, 8899, 88990N. [Google Scholar] [CrossRef] - Jouguet, P.; Kunz-Jacques, S.; Diamanti, E. Preventing calibration attacks on the local oscillator in continuous-variable quantum key distribution. Phys. Rev. A
**2013**, 87, 062313. [Google Scholar] [CrossRef] - Ma, X.C.; Sun, S.H.; Jiang, M.S.; Liang, L.M. Local oscillator fluctuation opens a loophole for Eve in practical continuous-variable quantum-key-distribution systems. Phys. Rev. A
**2013**, 88, 022339. [Google Scholar] [CrossRef] - Soh, D.B.S.; Brif, C.; Coles, P.J.; Lütkenhaus, N.; Camacho, R.M.; Urayama, J.; Sarovar, M. Self-Referenced continuous-variable quantum key distribution protocol. Phys. Rev. X
**2015**, 5, 041010. [Google Scholar] [CrossRef] - Qi, B.; Lougovski, P.; Pooser, R.; Grice, W.; Bobrek, M. Generating the local oscillator locally in continuous-variable quantum key distribution based on coherent detection. Phys. Rev. X
**2015**, 5, 041009. [Google Scholar] [CrossRef] - Huang, D.; Huang, P.; Lin, D.K.; Wang, C.; Zeng, G.-H. High-speed continuous-variable quantum key distribution without sending a local oscillator. Opt. Lett.
**2015**, 40, 3695–3698. [Google Scholar] [CrossRef] [PubMed] - Marie, A.; Alléaume, R. Self-coherent phase reference sharing for continuous-variable quantum key distribution. Phys. Rev. A
**2017**, 95, 012316. [Google Scholar] [CrossRef][Green Version] - Ralph, T.C.; Lund, A.P. Nondeterministic noiseless linear amplification of quantum systems. AIP Conf. Proc.
**2009**, 1110, 155–160. [Google Scholar] - Ferreyrol, F.; Barbieri, M.; Blandino, R.; Fossier, S.; Tualle-Brouri, R.; Grangier, P. Implementation of a nondeterministic optical noiseless amplifier. Phys. Rev. Lett.
**2010**, 104, 123603. [Google Scholar] [CrossRef] [PubMed] - Xiang, G.Y.; Ralph, T.C.; Lund, A.P.; Walk, N.; Pryde, G.J. Heralded noiseless linear amplification and distillation of entanglement. Nat. Photonics
**2010**, 4, 316–319. [Google Scholar] [CrossRef] - Usuga, M.A.; Müller, C.R.; Wittmann, C.; Marek, P.; Filip, R.; Marquardt, C.; Leuchs, G.; Andersen, U.L. Heralded noiseless linear amplification and distillation of entanglement. Nat. Phys.
**2010**, 6, 316–319. [Google Scholar] - Ferreyrol, F.; Blandino, R.; Barbieri, M.; Tualle-Brouri, R.; Grangier, P. Experimental realization of a nondeterministic optical noiseless amplifier. Phys. Rev. A
**2011**, 83, 063801. [Google Scholar] [CrossRef] - Barbieri, M.; Ferreyrol, F.; Blandino, R.; Tualle-Brouri, R.; Grangier, P. Nondeterministic noiseless amplification of optical signals: a review of recent experiments. Laser Phys. Lett.
**2011**, 8, 411–417. [Google Scholar] [CrossRef] - Zavatta, A.; Fiurasek, J.; Bellini, M. A high-fidelity noiseless amplifier for quantum light states. Nat. Photonics
**2011**, 5, 52–56. [Google Scholar] [CrossRef] - McMahon, N.A.; Lund, A.P.; Ralph, T.C. Optimal architecture for a nondeterministic noiseless linear amplifier. Phys. Rev. A
**2014**, 89, 269–274. [Google Scholar] [CrossRef] - Blandino, R.; Leverrier, A.; Barbieri, M.; Etesse, J.; Grangier, P.; Tualle-Brouri, R. Improving the maximum transmission distance of continuous-variable quantum key distribution using a noiseless amplifier. Phys. Rev. A
**2012**, 86, 113–115. [Google Scholar] [CrossRef] - Jaromír, F.; Nicolas, C.J. Gaussian postselection and virtual noiseless amplification in continuous-variable quantum key distribution. Phys. Rev. A
**2012**, 86, 060302. [Google Scholar] - Xu, B.J.; Tang, C.M.; Chen, H.; Zhang, W.Z.; Zhu, F.C. Improving the maximum transmission distance of four-state continuous-variable quantum keydistribution by using a noiseless linear amplifier. Phys. Rev. A
**2013**, 87, 062311. [Google Scholar] [CrossRef] - Yang, F.L.; Shi, R.H.; Guo, Y.; Shi, J.J.; Zeng, G.H. Continuous-variable quantum key distribution under the local oscillator intensity attack with noiseless linear amplifier. Quantum Inf. Process.
**2015**, 14, 3041–3056. [Google Scholar] [CrossRef] - Bai, D.Y.; Huang, P.; Ma, H.X.; Wang, T.; Zeng, G.H. Performance improvement of plug-and-play dual-phase-modulated quantum key distribution by using a noiseless amplifier. Entropy
**2017**, 19, 546. [Google Scholar] [CrossRef] - Walk, N.; Ralph, T.C.; Symul, T.; Lam, P.K. Security of continuous-variable quantum cryptography with gaussian postselection. Phys. Rev. A
**2013**, 87, 020303. [Google Scholar] [CrossRef] - Fossier, S. Mise en Oeuvre et Évaluation de Dispositifs de Cryptographie Quantique à Longueur D’onde Télécom. Ph.D. Thesis, Thales Research & Technology France, Palaiseau, France, 2009, unpublished. [Google Scholar]
- García-Patrón, R. Quantum Information with Optical Continuous Variables: From Bell Tests to Key Distribution. Ph.D. Thesis, Université Libre de Bruxelles, Bruxelles, Belgium, 2007. [Google Scholar]

**Figure 1.**(

**a**) Conventional one-way CV-QKD scheme. The quantum signal and LO are co-transmitted from Alice to Bob. During the QKD process, complicated multiplexing and demultiplexing techniques are employed. (

**b**) SR CV-QKD scheme. Alice sends quantum signals and reference pulses to Bob in the same channel. Bob measures the received pulses in his own phase reference frame defined by the locally generated LO. Mod: Gaussian modulator; Mux: multiplexer; Dem: demultiplexer; CD: coherent detection; QM: quantum memory.

**Figure 2.**Schematic of the SR CV-QKD protocol with an NLA before detection. Mod: Gaussian modulator; CD: coherent detection; QM: quantum memory.

**Figure 3.**The CV-QKD scheme added an NLA with parameters $(\lambda ,T,\epsilon ,g)$ is equivalent to the scheme without using an NLA with parameters $(\zeta ,\eta ,{\epsilon}^{g},g=1)$.

**Figure 4.**(Color online) (

**a**) The variance of estimated phase difference $\widehat{\theta}$ as a function of transmission distance at different values of ${E}_{R}$. (

**b**) Secret key rate of SR CV-QKD scheme when ${E}_{R}$ takes ideal value (${E}_{R}=500{V}_{A}$) and reasonable value (${E}_{R}=20{V}_{A}$). The parameters involved above: ${V}_{A}=4$, $\epsilon =0.01$ (all in shot-noise units), $\beta =0.95$.

**Figure 5.**(Color online) (

**a**) Maximum value of the gain as a function of transmission distance where excess noise $\epsilon =0.01$. (

**b**) Maximum transmission distance of the SR CV-QKD scheme using an NLA with different gain (g = 1, 2, 3). Other parameters involved above: $V=4$, $\epsilon =0.01$(all in shot-noise units), $\beta =0.95$, ${E}_{R}/{V}_{A}=20$.

**Figure 6.**(Color online) (

**a**) Maximized secret key rate as the function of the gain g when the transmission distance is 50 km. (

**b**) Maximized excess noise as a function of transmission distance while the secret key rate remains positive. Other parameters involved in the above two figures: ${V}_{A}=4$, $\epsilon =0.01$ (all in shot-noise units), $\beta =0.95$, ${E}_{R}/{V}_{A}=20$.

© 2018 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/).