Most people don't need anything more complex than this for their firewall needs, so iptables is overkill.
Not only that, but iptables is just terrible to use and it just makes you want to kill yourself.
I've deployed a pretty standard policy now in DO with a couple of clicks, works as expected.
(And before anyone jumps, you should be using a host firewall too; defence in depth)